CVE-2024-43623

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 12, 2024
Updated: Nov 15, 2024
CWE ID 190

Summary

CVE-2024-43623 is a newly disclosed vulnerability that affects the Windows NT OS Kernel. This elevation of privilege vulnerability allows an attacker to gain higher system privileges, potentially enabling them to install unauthorized software, view, change, or delete sensitive information, and disrupt normal system operations. The exact cause of the vulnerability is not yet publicly known, but it is recommended that affected systems be updated as soon as possible with the appropriate Microsoft security patches to mitigate the risk. Failure to address this vulnerability could result in significant security consequences for organizations and individuals using the vulnerable Windows operating system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows
  • Microsoft Windows 11
  • Microsoft Windows Server 2008

Affected Vendors

  • Microsoft