CVE-2024-43571
CVSS 3.1 Score 7.3 of 10 (high)
Details
Published Oct 8, 2024
Updated: Oct 16, 2024
CWE ID 923
Summary
CVE-2024-43571 is a newly disclosed vulnerability affecting Sudo for Windows. This issue enables attackers to perform privilege escalation through spoofing techniques. By manipulating the sudo.conf file, an attacker can gain elevated privileges, potentially compromising the entire system. The vulnerability is significant as Sudo for Windows is widely used for managing administrative tasks in Microsoft environments. It is crucial that affected organizations apply the available patch as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 11
Affected Vendors
- Microsoft