CVE-2024-38128

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 13, 2024
Updated: Aug 16, 2024
CWE ID 190

Summary

CVE-2024-38128 is a newly disclosed vulnerability that affects Microsoft's Windows Routing and Remote Access Service (RRAS). This issue permits an unauthenticated remote attacker to execute arbitrary code on vulnerable systems. Successful exploitation could lead to a complete system compromise. The vulnerability is currently unpatched, and it is recommended that organizations prioritize implementing mitigations and monitoring their networks for any suspicious activity related to this flaw.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Windows Server 2022
  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2012
  • Microsoft Windows Server 2016
  • Microsoft Windows Server 2019

Affected Vendors

  • Microsoft