CVE-2024-49104
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Dec 12, 2024
CWE ID 122
Summary
CVE-2024-49104 is a newly identified remote code execution vulnerability affecting Microsoft's Windows Routing and Remote Access Service (RRAS). Successful exploitation of this weakness allows attackers to execute arbitrary code on targeted systems. The vulnerability is significant due to RRAS's role as a critical networking component, potentially exposing enterprise networks to remote attack. Mitigation involves applying the forthcoming Microsoft security patch or implementing network segmentation to limit attack surfaces.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 11
- Microsoft Windows Server 2008
- Microsoft Windows
- Microsoft Windows Server
Affected Vendors
- Microsoft