Patch Tuesday Archive
Patch Tuesday April 2024
Total CVEs
152
Critical
3
Important
142
Exploited
1
Publicly Disclosed
1
All CVEs this month 152
| CVE | Title | Severity | CVSS | Product | Exploited | Disclosed | Diffed |
|---|---|---|---|---|---|---|---|
| CVE-2024-26193 | Azure Migrate Remote Code Execution Vulnerability | Important | 6.4 |
Azure Migrate | - | - | - |
| CVE-2024-20688 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.1 |
Windows Secure Boot | - | - | - |
| CVE-2024-20693 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2024-20669 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-20665 | BitLocker Security Feature Bypass Vulnerability | Important | 6.7 |
Windows BitLocker | - | - | - |
| CVE-2024-20678 | Remote Procedure Call Runtime Remote Code Execution Vulnerability | Important | 8.8 |
Windows Remote Procedure Call | - | - | - |
| CVE-2024-21409 | .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability | Important | 7.3 |
.NET and Visual Studio | - | - | - |
| CVE-2024-21424 | Azure Compute Gallery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Compute Gallery | - | - | - |
| CVE-2024-21447 | Windows Authentication Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Authentication Methods | - | - | - |
| CVE-2024-26250 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-26252 | Windows rndismp6.sys Remote Code Execution Vulnerability | Important | 6.8 |
Windows Internet Connection Sharing (ICS) | - | - | - |
| CVE-2024-26253 | Windows rndismp6.sys Remote Code Execution Vulnerability | Important | 6.8 |
Windows Internet Connection Sharing (ICS) | - | - | - |
| CVE-2024-26254 | Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability | Important | 7.5 |
Windows Virtual Machine Bus | - | - | - |
| CVE-2024-26255 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Important | 5.5 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-26256 | Libarchive Remote Code Execution Vulnerability | Important | 7.8 |
Windows Compressed Folder | - | - | - |
| CVE-2024-26172 | Windows DWM Core Library Information Disclosure Vulnerability | Important | 5.5 |
Windows DWM Core Library | - | - | - |
| CVE-2024-26179 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Important | 8.8 |
Windows Routing and Remote Access Service (RRAS) | - | - | - |
| CVE-2024-26200 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Important | 8.8 |
Windows Routing and Remote Access Service (RRAS) | - | - | - |
| CVE-2024-26205 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Important | 8.8 |
Windows Routing and Remote Access Service (RRAS) | - | - | - |
| CVE-2024-26158 | Microsoft Install Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Install Service | - | - | - |
| CVE-2024-26232 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | Important | 7.3 |
Windows Message Queuing | - | - | - |
| CVE-2024-28920 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.8 |
Windows Secure Boot | - | - | - |
| CVE-2024-28922 | Secure Boot Security Feature Bypass Vulnerability | Important | 4.1 |
Windows Secure Boot | - | - | - |
| CVE-2024-28921 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-28919 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-28923 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.4 |
Windows Secure Boot | - | - | - |
| CVE-2024-28896 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.5 |
Windows Secure Boot | - | - | - |
| CVE-2024-28898 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.3 |
Windows Secure Boot | - | - | - |
| CVE-2024-28901 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Important | 5.5 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-28902 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Important | 5.5 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-28903 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-28905 | Microsoft Brokering File System Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Brokering File System | - | - | - |
| CVE-2024-28906 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28908 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28909 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28910 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28911 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28912 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28913 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28914 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28915 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28929 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28931 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28932 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28936 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28939 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28942 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28945 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29043 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29045 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 7.5 |
SQL Server | - | - | - |
| CVE-2024-29047 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29050 | Windows Cryptographic Services Remote Code Execution Vulnerability | Important | 7.8 |
Windows Cryptographic Services | - | - | - |
| CVE-2024-29063 | Azure AI Search Information Disclosure Vulnerability | Important | 5.5 |
Azure AI Search | - | - | - |
| CVE-2024-29064 | Windows Hyper-V Denial of Service Vulnerability | Important | 5.5 |
Role: Windows Hyper-V | - | - | - |
| CVE-2024-29066 | Windows Distributed File System (DFS) Remote Code Execution Vulnerability | Important | 7.2 |
Windows Distributed File System (DFS) | - | - | - |
| CVE-2024-20685 | Azure Private 5G Core Denial of Service Vulnerability | Moderate | 5.9 |
Azure Private 5G Core | - | - | - |
| CVE-2024-29981 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | Low | 4.3 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2024-29988 | SmartScreen Prompt Security Feature Bypass Vulnerability | Important | 8.8 |
Internet Shortcut Files | - | - | - |
| CVE-2024-29990 | Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability | Important | 9 |
Microsoft Azure Kubernetes Service | - | - | - |
| CVE-2024-20689 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.1 |
Windows Secure Boot | - | - | - |
| CVE-2024-21322 | Microsoft Defender for IoT Remote Code Execution Vulnerability | Critical | 7.2 |
Microsoft Defender for IoT | - | - | - |
| CVE-2024-21323 | Microsoft Defender for IoT Remote Code Execution Vulnerability | Critical | 8.8 |
Microsoft Defender for IoT | - | - | - |
| CVE-2024-21324 | Microsoft Defender for IoT Elevation of Privilege Vulnerability | Important | 7.2 |
Microsoft Defender for IoT | - | - | - |
| CVE-2024-26168 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.8 |
Windows Secure Boot | - | - | - |
| CVE-2024-26171 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-26175 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.8 |
Windows Secure Boot | - | - | - |
| CVE-2024-26180 | Secure Boot Security Feature Bypass Vulnerability | Important | 8 |
Windows Secure Boot | - | - | - |
| CVE-2024-26183 | Windows Kerberos Denial of Service Vulnerability | Important | 6.5 |
Windows Kerberos | - | - | - |
| CVE-2024-26189 | Secure Boot Security Feature Bypass Vulnerability | Important | 8 |
Windows Secure Boot | - | - | - |
| CVE-2024-26194 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.4 |
Windows Secure Boot | - | - | - |
| CVE-2024-26195 | DHCP Server Service Remote Code Execution Vulnerability | Important | 7.2 |
Windows DHCP Server | - | - | - |
| CVE-2024-26202 | DHCP Server Service Remote Code Execution Vulnerability | Important | 7.2 |
Windows DHCP Server | - | - | - |
| CVE-2024-26209 | Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability | Important | 5.5 |
Windows Local Security Authority Subsystem Service (LSASS) | - | - | - |
| CVE-2024-26218 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2024-26219 | HTTP.sys Denial of Service Vulnerability | Important | 7.5 |
Windows HTTP.sys | - | - | - |
| CVE-2024-26220 | Windows Mobile Hotspot Information Disclosure Vulnerability | Important | 5 |
Windows Mobile Hotspot | - | - | - |
| CVE-2024-26221 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26222 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26223 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26224 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26227 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26231 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26233 | Windows DNS Server Remote Code Execution Vulnerability | Important | 6.6 |
Role: DNS Server | - | - | - |
| CVE-2024-26241 | Win32k Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Win32K - ICOMP | - | - | - |
| CVE-2024-26243 | Windows USB Print Driver Elevation of Privilege Vulnerability | Important | 7 |
Windows USB Print Driver | - | - | - |
| CVE-2024-26248 | Windows Kerberos Elevation of Privilege Vulnerability | Important | 7.5 |
Windows Kerberos | - | - | - |
| CVE-2024-26210 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft WDAC OLE DB provider for SQL | - | - | - |
| CVE-2024-26229 | Windows CSC Service Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2024-26234 | Proxy Driver Spoofing Vulnerability | Important | 6.7 |
Windows Proxy Driver | Yes | Yes | - |
| CVE-2024-26235 | Windows Update Stack Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Update Stack | - | - | - |
| CVE-2024-26236 | Windows Update Stack Elevation of Privilege Vulnerability | Important | 7 |
Windows Update Stack | - | - | - |
| CVE-2024-26237 | Windows Defender Credential Guard Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Defender Credential Guard | - | - | - |
| CVE-2024-26242 | Windows Telephony Server Elevation of Privilege Vulnerability | Important | 7 |
Windows Telephony Server | - | - | - |
| CVE-2024-26244 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft WDAC OLE DB provider for SQL | - | - | - |
| CVE-2024-26245 | Windows SMB Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2024-26207 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Important | 5.5 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-26208 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | Important | 7.2 |
Windows Message Queuing | - | - | - |
| CVE-2024-26211 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-26212 | DHCP Server Service Denial of Service Vulnerability | Important | 7.5 |
Windows DHCP Server | - | - | - |
| CVE-2024-26213 | Microsoft Brokering File System Elevation of Privilege Vulnerability | Important | 7 |
Microsoft Brokering File System | - | - | - |
| CVE-2024-26214 | Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft WDAC ODBC Driver | - | - | - |
| CVE-2024-26215 | DHCP Server Service Denial of Service Vulnerability | Important | 7.5 |
Windows DHCP Server | - | - | - |
| CVE-2024-26216 | Windows File Server Resource Management Service Elevation of Privilege Vulnerability | Important | 7.3 |
Windows File Server Resource Management Service | - | - | - |
| CVE-2024-26217 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Important | 3.3 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-26226 | Windows Distributed File System (DFS) Information Disclosure Vulnerability | Important | 6.5 |
Windows Distributed File System (DFS) | - | - | - |
| CVE-2024-26228 | Windows Cryptographic Services Security Feature Bypass Vulnerability | Important | 7.8 |
Windows Cryptographic Services | - | - | - |
| CVE-2024-26230 | Windows Telephony Server Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Remote Access Connection Manager | - | - | Yes |
| CVE-2024-26239 | Windows Telephony Server Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-26240 | Secure Boot Security Feature Bypass Vulnerability | Important | 8 |
Windows Secure Boot | - | - | - |
| CVE-2024-26251 | Microsoft SharePoint Server Spoofing Vulnerability | Important | 3.1 |
Microsoft Office SharePoint | - | - | - |
| CVE-2024-26257 | Microsoft Excel Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft Office Excel | - | - | - |
| CVE-2024-28924 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.7 |
Windows Secure Boot | - | - | - |
| CVE-2024-28925 | Secure Boot Security Feature Bypass Vulnerability | Important | 8 |
Windows Secure Boot | - | - | - |
| CVE-2024-28897 | Secure Boot Security Feature Bypass Vulnerability | Important | 6.8 |
Windows Secure Boot | - | - | - |
| CVE-2024-28900 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Important | 5.5 |
Windows Remote Access Connection Manager | - | - | - |
| CVE-2024-28904 | Microsoft Brokering File System Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Brokering File System | - | - | - |
| CVE-2024-28907 | Microsoft Brokering File System Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Brokering File System | - | - | - |
| CVE-2024-28917 | Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability | Important | 6.2 |
Azure Arc | - | - | - |
| CVE-2024-28926 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28927 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28930 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28933 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28934 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28935 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28937 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28938 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28940 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28941 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28943 | Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-28944 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29044 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29046 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29048 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29049 | Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability | Moderate | 4.7 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2024-29052 | Windows Storage Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Storage | - | - | - |
| CVE-2024-29053 | Microsoft Defender for IoT Remote Code Execution Vulnerability | Critical | 8.8 |
Microsoft Defender for IoT | - | - | - |
| CVE-2024-29055 | Microsoft Defender for IoT Elevation of Privilege Vulnerability | Important | 7.2 |
Microsoft Defender for IoT | - | - | - |
| CVE-2024-29054 | Microsoft Defender for IoT Elevation of Privilege Vulnerability | Important | 7.2 |
Microsoft Defender for IoT | - | - | - |
| CVE-2024-29056 | Windows Authentication Elevation of Privilege Vulnerability | Important | 4.3 |
Windows Authentication Methods | - | - | - |
| CVE-2024-29061 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.8 |
Windows Secure Boot | - | - | - |
| CVE-2024-29062 | Secure Boot Security Feature Bypass Vulnerability | Important | 7.1 |
Windows Secure Boot | - | - | - |
| CVE-2024-20670 | Outlook for Windows Spoofing Vulnerability | Important | 8.1 |
Microsoft Office Outlook | - | - | - |
| CVE-2024-29982 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29983 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29984 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29985 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | Important | 8.8 |
SQL Server | - | - | - |
| CVE-2024-29989 | Azure Monitor Agent Elevation of Privilege Vulnerability | Important | 8.4 |
Azure Monitor | - | - | - |
| CVE-2024-29992 | Azure Identity Library for .NET Information Disclosure Vulnerability | Moderate | 5.5 |
Azure SDK | - | - | - |
| CVE-2024-29993 | Azure CycleCloud Elevation of Privilege Vulnerability | Important | 8.8 |
Azure | - | - | - |
| CVE-2024-29987 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | Low | 6.5 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2024-29986 | Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability | Low | 5.4 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2024-29991 | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability | Low | 5 |
Microsoft Edge (Chromium-based) | - | - | - |
Threat Categories 6
| Threat Category | CVEs | Critical |
|---|---|---|
| Remote Code Execution | 67 | 3 |
| Elevation of Privilege | 31 | - |
| Security Feature Bypass | 28 | - |
| Information Disclosure | 14 | - |
| Denial of Service | 7 | - |
| Spoofing | 5 | - |
Affected Products 50
| Product | CVEs | Exploited |
|---|---|---|
| SQL Server | 38 | - |
| Windows Secure Boot | 24 | - |
| Windows Remote Access Connection Manager | 9 | - |
| Role: DNS Server | 7 | - |
| Microsoft Defender for IoT | 6 | - |
| Microsoft Edge (Chromium-based) | 5 | - |
| Microsoft Brokering File System | 4 | - |
| Windows DHCP Server | 4 | - |
| Windows Kernel | 4 | - |
| Windows Routing and Remote Access Service (RRAS) | 3 | - |
| Microsoft WDAC OLE DB provider for SQL | 2 | - |
| Windows Authentication Methods | 2 | - |
| Windows Cryptographic Services | 2 | - |
| Windows Distributed File System (DFS) | 2 | - |
| Windows Internet Connection Sharing (ICS) | 2 | - |
| Windows Kerberos | 2 | - |
| Windows Message Queuing | 2 | - |
| Windows Update Stack | 2 | - |
| .NET and Visual Studio | 1 | - |
| Azure | 1 | - |
| Azure AI Search | 1 | - |
| Azure Arc | 1 | - |
| Azure Compute Gallery | 1 | - |
| Azure Migrate | 1 | - |
| Azure Monitor | 1 | - |
| Azure Private 5G Core | 1 | - |
| Azure SDK | 1 | - |
| Internet Shortcut Files | 1 | - |
| Microsoft Azure Kubernetes Service | 1 | - |
| Microsoft Install Service | 1 | - |
| Microsoft Office Excel | 1 | - |
| Microsoft Office Outlook | 1 | - |
| Microsoft Office SharePoint | 1 | - |
| Microsoft WDAC ODBC Driver | 1 | - |
| Role: Windows Hyper-V | 1 | - |
| Windows BitLocker | 1 | - |
| Windows Compressed Folder | 1 | - |
| Windows DWM Core Library | 1 | - |
| Windows Defender Credential Guard | 1 | - |
| Windows File Server Resource Management Service | 1 | - |
| Windows HTTP.sys | 1 | - |
| Windows Local Security Authority Subsystem Service (LSASS) | 1 | - |
| Windows Mobile Hotspot | 1 | - |
| Windows Proxy Driver | 1 | 1 |
| Windows Remote Procedure Call | 1 | - |
| Windows Storage | 1 | - |
| Windows Telephony Server | 1 | - |
| Windows USB Print Driver | 1 | - |
| Windows Virtual Machine Bus | 1 | - |
| Windows Win32K - ICOMP | 1 | - |