Total CVEs

152

Critical

3

Important

142

Exploited

1

Publicly Disclosed

1

All CVEs this month 152

CVE Title Severity CVSS Product Exploited Disclosed Diffed
CVE-2024-26193 Azure Migrate Remote Code Execution Vulnerability Important 6.4 Azure Migrate - - -
CVE-2024-20688 Secure Boot Security Feature Bypass Vulnerability Important 7.1 Windows Secure Boot - - -
CVE-2024-20693 Windows Kernel Elevation of Privilege Vulnerability Important 7.8 Windows Kernel - - -
CVE-2024-20669 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-20665 BitLocker Security Feature Bypass Vulnerability Important 6.7 Windows BitLocker - - -
CVE-2024-20678 Remote Procedure Call Runtime Remote Code Execution Vulnerability Important 8.8 Windows Remote Procedure Call - - -
CVE-2024-21409 .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability Important 7.3 .NET and Visual Studio - - -
CVE-2024-21424 Azure Compute Gallery Elevation of Privilege Vulnerability Important 6.5 Azure Compute Gallery - - -
CVE-2024-21447 Windows Authentication Elevation of Privilege Vulnerability Important 7.8 Windows Authentication Methods - - -
CVE-2024-26250 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-26252 Windows rndismp6.sys Remote Code Execution Vulnerability Important 6.8 Windows Internet Connection Sharing (ICS) - - -
CVE-2024-26253 Windows rndismp6.sys Remote Code Execution Vulnerability Important 6.8 Windows Internet Connection Sharing (ICS) - - -
CVE-2024-26254 Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability Important 7.5 Windows Virtual Machine Bus - - -
CVE-2024-26255 Windows Remote Access Connection Manager Information Disclosure Vulnerability Important 5.5 Windows Remote Access Connection Manager - - -
CVE-2024-26256 Libarchive Remote Code Execution Vulnerability Important 7.8 Windows Compressed Folder - - -
CVE-2024-26172 Windows DWM Core Library Information Disclosure Vulnerability Important 5.5 Windows DWM Core Library - - -
CVE-2024-26179 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Important 8.8 Windows Routing and Remote Access Service (RRAS) - - -
CVE-2024-26200 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Important 8.8 Windows Routing and Remote Access Service (RRAS) - - -
CVE-2024-26205 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Important 8.8 Windows Routing and Remote Access Service (RRAS) - - -
CVE-2024-26158 Microsoft Install Service Elevation of Privilege Vulnerability Important 7.8 Microsoft Install Service - - -
CVE-2024-26232 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Important 7.3 Windows Message Queuing - - -
CVE-2024-28920 Secure Boot Security Feature Bypass Vulnerability Important 7.8 Windows Secure Boot - - -
CVE-2024-28922 Secure Boot Security Feature Bypass Vulnerability Important 4.1 Windows Secure Boot - - -
CVE-2024-28921 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-28919 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-28923 Secure Boot Security Feature Bypass Vulnerability Important 6.4 Windows Secure Boot - - -
CVE-2024-28896 Secure Boot Security Feature Bypass Vulnerability Important 7.5 Windows Secure Boot - - -
CVE-2024-28898 Secure Boot Security Feature Bypass Vulnerability Important 6.3 Windows Secure Boot - - -
CVE-2024-28901 Windows Remote Access Connection Manager Information Disclosure Vulnerability Important 5.5 Windows Remote Access Connection Manager - - -
CVE-2024-28902 Windows Remote Access Connection Manager Information Disclosure Vulnerability Important 5.5 Windows Remote Access Connection Manager - - -
CVE-2024-28903 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-28905 Microsoft Brokering File System Elevation of Privilege Vulnerability Important 7.8 Microsoft Brokering File System - - -
CVE-2024-28906 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28908 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28909 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28910 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28911 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28912 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28913 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28914 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28915 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28929 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28931 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28932 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28936 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28939 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28942 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28945 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29043 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29045 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 7.5 SQL Server - - -
CVE-2024-29047 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29050 Windows Cryptographic Services Remote Code Execution Vulnerability Important 7.8 Windows Cryptographic Services - - -
CVE-2024-29063 Azure AI Search Information Disclosure Vulnerability Important 5.5 Azure AI Search - - -
CVE-2024-29064 Windows Hyper-V Denial of Service Vulnerability Important 5.5 Role: Windows Hyper-V - - -
CVE-2024-29066 Windows Distributed File System (DFS) Remote Code Execution Vulnerability Important 7.2 Windows Distributed File System (DFS) - - -
CVE-2024-20685 Azure Private 5G Core Denial of Service Vulnerability Moderate 5.9 Azure Private 5G Core - - -
CVE-2024-29981 Microsoft Edge (Chromium-based) Spoofing Vulnerability Low 4.3 Microsoft Edge (Chromium-based) - - -
CVE-2024-29988 SmartScreen Prompt Security Feature Bypass Vulnerability Important 8.8 Internet Shortcut Files - - -
CVE-2024-29990 Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability Important 9 Microsoft Azure Kubernetes Service - - -
CVE-2024-20689 Secure Boot Security Feature Bypass Vulnerability Important 7.1 Windows Secure Boot - - -
CVE-2024-21322 Microsoft Defender for IoT Remote Code Execution Vulnerability Critical 7.2 Microsoft Defender for IoT - - -
CVE-2024-21323 Microsoft Defender for IoT Remote Code Execution Vulnerability Critical 8.8 Microsoft Defender for IoT - - -
CVE-2024-21324 Microsoft Defender for IoT Elevation of Privilege Vulnerability Important 7.2 Microsoft Defender for IoT - - -
CVE-2024-26168 Secure Boot Security Feature Bypass Vulnerability Important 6.8 Windows Secure Boot - - -
CVE-2024-26171 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-26175 Secure Boot Security Feature Bypass Vulnerability Important 7.8 Windows Secure Boot - - -
CVE-2024-26180 Secure Boot Security Feature Bypass Vulnerability Important 8 Windows Secure Boot - - -
CVE-2024-26183 Windows Kerberos Denial of Service Vulnerability Important 6.5 Windows Kerberos - - -
CVE-2024-26189 Secure Boot Security Feature Bypass Vulnerability Important 8 Windows Secure Boot - - -
CVE-2024-26194 Secure Boot Security Feature Bypass Vulnerability Important 7.4 Windows Secure Boot - - -
CVE-2024-26195 DHCP Server Service Remote Code Execution Vulnerability Important 7.2 Windows DHCP Server - - -
CVE-2024-26202 DHCP Server Service Remote Code Execution Vulnerability Important 7.2 Windows DHCP Server - - -
CVE-2024-26209 Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability Important 5.5 Windows Local Security Authority Subsystem Service (LSASS) - - -
CVE-2024-26218 Windows Kernel Elevation of Privilege Vulnerability Important 7.8 Windows Kernel - - -
CVE-2024-26219 HTTP.sys Denial of Service Vulnerability Important 7.5 Windows HTTP.sys - - -
CVE-2024-26220 Windows Mobile Hotspot Information Disclosure Vulnerability Important 5 Windows Mobile Hotspot - - -
CVE-2024-26221 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26222 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26223 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26224 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26227 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26231 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26233 Windows DNS Server Remote Code Execution Vulnerability Important 6.6 Role: DNS Server - - -
CVE-2024-26241 Win32k Elevation of Privilege Vulnerability Important 7.8 Windows Win32K - ICOMP - - -
CVE-2024-26243 Windows USB Print Driver Elevation of Privilege Vulnerability Important 7 Windows USB Print Driver - - -
CVE-2024-26248 Windows Kerberos Elevation of Privilege Vulnerability Important 7.5 Windows Kerberos - - -
CVE-2024-26210 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Important 8.8 Microsoft WDAC OLE DB provider for SQL - - -
CVE-2024-26229 Windows CSC Service Elevation of Privilege Vulnerability Important 7.8 Windows Kernel - - -
CVE-2024-26234 Proxy Driver Spoofing Vulnerability Important 6.7 Windows Proxy Driver Yes Yes -
CVE-2024-26235 Windows Update Stack Elevation of Privilege Vulnerability Important 7.8 Windows Update Stack - - -
CVE-2024-26236 Windows Update Stack Elevation of Privilege Vulnerability Important 7 Windows Update Stack - - -
CVE-2024-26237 Windows Defender Credential Guard Elevation of Privilege Vulnerability Important 7.8 Windows Defender Credential Guard - - -
CVE-2024-26242 Windows Telephony Server Elevation of Privilege Vulnerability Important 7 Windows Telephony Server - - -
CVE-2024-26244 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Important 8.8 Microsoft WDAC OLE DB provider for SQL - - -
CVE-2024-26245 Windows SMB Elevation of Privilege Vulnerability Important 7.8 Windows Kernel - - -
CVE-2024-26207 Windows Remote Access Connection Manager Information Disclosure Vulnerability Important 5.5 Windows Remote Access Connection Manager - - -
CVE-2024-26208 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Important 7.2 Windows Message Queuing - - -
CVE-2024-26211 Windows Remote Access Connection Manager Elevation of Privilege Vulnerability Important 7.8 Windows Remote Access Connection Manager - - -
CVE-2024-26212 DHCP Server Service Denial of Service Vulnerability Important 7.5 Windows DHCP Server - - -
CVE-2024-26213 Microsoft Brokering File System Elevation of Privilege Vulnerability Important 7 Microsoft Brokering File System - - -
CVE-2024-26214 Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability Important 8.8 Microsoft WDAC ODBC Driver - - -
CVE-2024-26215 DHCP Server Service Denial of Service Vulnerability Important 7.5 Windows DHCP Server - - -
CVE-2024-26216 Windows File Server Resource Management Service Elevation of Privilege Vulnerability Important 7.3 Windows File Server Resource Management Service - - -
CVE-2024-26217 Windows Remote Access Connection Manager Information Disclosure Vulnerability Important 3.3 Windows Remote Access Connection Manager - - -
CVE-2024-26226 Windows Distributed File System (DFS) Information Disclosure Vulnerability Important 6.5 Windows Distributed File System (DFS) - - -
CVE-2024-26228 Windows Cryptographic Services Security Feature Bypass Vulnerability Important 7.8 Windows Cryptographic Services - - -
CVE-2024-26230 Windows Telephony Server Elevation of Privilege Vulnerability Important 7.8 Windows Remote Access Connection Manager - - Yes
CVE-2024-26239 Windows Telephony Server Elevation of Privilege Vulnerability Important 7.8 Windows Remote Access Connection Manager - - -
CVE-2024-26240 Secure Boot Security Feature Bypass Vulnerability Important 8 Windows Secure Boot - - -
CVE-2024-26251 Microsoft SharePoint Server Spoofing Vulnerability Important 3.1 Microsoft Office SharePoint - - -
CVE-2024-26257 Microsoft Excel Remote Code Execution Vulnerability Important 7.8 Microsoft Office Excel - - -
CVE-2024-28924 Secure Boot Security Feature Bypass Vulnerability Important 6.7 Windows Secure Boot - - -
CVE-2024-28925 Secure Boot Security Feature Bypass Vulnerability Important 8 Windows Secure Boot - - -
CVE-2024-28897 Secure Boot Security Feature Bypass Vulnerability Important 6.8 Windows Secure Boot - - -
CVE-2024-28900 Windows Remote Access Connection Manager Information Disclosure Vulnerability Important 5.5 Windows Remote Access Connection Manager - - -
CVE-2024-28904 Microsoft Brokering File System Elevation of Privilege Vulnerability Important 7.8 Microsoft Brokering File System - - -
CVE-2024-28907 Microsoft Brokering File System Elevation of Privilege Vulnerability Important 7.8 Microsoft Brokering File System - - -
CVE-2024-28917 Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability Important 6.2 Azure Arc - - -
CVE-2024-28926 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28927 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28930 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28933 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28934 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28935 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28937 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28938 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28940 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28941 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28943 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-28944 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29044 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29046 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29048 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29049 Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability Moderate 4.7 Microsoft Edge (Chromium-based) - - -
CVE-2024-29052 Windows Storage Elevation of Privilege Vulnerability Important 7.8 Windows Storage - - -
CVE-2024-29053 Microsoft Defender for IoT Remote Code Execution Vulnerability Critical 8.8 Microsoft Defender for IoT - - -
CVE-2024-29055 Microsoft Defender for IoT Elevation of Privilege Vulnerability Important 7.2 Microsoft Defender for IoT - - -
CVE-2024-29054 Microsoft Defender for IoT Elevation of Privilege Vulnerability Important 7.2 Microsoft Defender for IoT - - -
CVE-2024-29056 Windows Authentication Elevation of Privilege Vulnerability Important 4.3 Windows Authentication Methods - - -
CVE-2024-29061 Secure Boot Security Feature Bypass Vulnerability Important 7.8 Windows Secure Boot - - -
CVE-2024-29062 Secure Boot Security Feature Bypass Vulnerability Important 7.1 Windows Secure Boot - - -
CVE-2024-20670 Outlook for Windows Spoofing Vulnerability Important 8.1 Microsoft Office Outlook - - -
CVE-2024-29982 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29983 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29984 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29985 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Important 8.8 SQL Server - - -
CVE-2024-29989 Azure Monitor Agent Elevation of Privilege Vulnerability Important 8.4 Azure Monitor - - -
CVE-2024-29992 Azure Identity Library for .NET Information Disclosure Vulnerability Moderate 5.5 Azure SDK - - -
CVE-2024-29993 Azure CycleCloud Elevation of Privilege Vulnerability Important 8.8 Azure - - -
CVE-2024-29987 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Low 6.5 Microsoft Edge (Chromium-based) - - -
CVE-2024-29986 Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability Low 5.4 Microsoft Edge (Chromium-based) - - -
CVE-2024-29991 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Low 5 Microsoft Edge (Chromium-based) - - -

Threat Categories 6

Threat Category CVEs Critical
Remote Code Execution 67 3
Elevation of Privilege 31 -
Security Feature Bypass 28 -
Information Disclosure 14 -
Denial of Service 7 -
Spoofing 5 -

Affected Products 50

Product CVEs Exploited
SQL Server 38 -
Windows Secure Boot 24 -
Windows Remote Access Connection Manager 9 -
Role: DNS Server 7 -
Microsoft Defender for IoT 6 -
Microsoft Edge (Chromium-based) 5 -
Microsoft Brokering File System 4 -
Windows DHCP Server 4 -
Windows Kernel 4 -
Windows Routing and Remote Access Service (RRAS) 3 -
Microsoft WDAC OLE DB provider for SQL 2 -
Windows Authentication Methods 2 -
Windows Cryptographic Services 2 -
Windows Distributed File System (DFS) 2 -
Windows Internet Connection Sharing (ICS) 2 -
Windows Kerberos 2 -
Windows Message Queuing 2 -
Windows Update Stack 2 -
.NET and Visual Studio 1 -
Azure 1 -
Azure AI Search 1 -
Azure Arc 1 -
Azure Compute Gallery 1 -
Azure Migrate 1 -
Azure Monitor 1 -
Azure Private 5G Core 1 -
Azure SDK 1 -
Internet Shortcut Files 1 -
Microsoft Azure Kubernetes Service 1 -
Microsoft Install Service 1 -
Microsoft Office Excel 1 -
Microsoft Office Outlook 1 -
Microsoft Office SharePoint 1 -
Microsoft WDAC ODBC Driver 1 -
Role: Windows Hyper-V 1 -
Windows BitLocker 1 -
Windows Compressed Folder 1 -
Windows DWM Core Library 1 -
Windows Defender Credential Guard 1 -
Windows File Server Resource Management Service 1 -
Windows HTTP.sys 1 -
Windows Local Security Authority Subsystem Service (LSASS) 1 -
Windows Mobile Hotspot 1 -
Windows Proxy Driver 1 1
Windows Remote Procedure Call 1 -
Windows Storage 1 -
Windows Telephony Server 1 -
Windows USB Print Driver 1 -
Windows Virtual Machine Bus 1 -
Windows Win32K - ICOMP 1 -