CVE-2024-21315
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/02/2024
Last modified:
17/10/2024
Description
Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:windows:*:* | 10.0.25398.531 (excluding) | |
| cpe:2.3:o:microsoft:windows_server_2022_23h2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:windows:*:* | 10.0.19045.3693 (excluding) | |
| cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:arm64:* | ||
| cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:x64:* | ||
| cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:windows:*:* | 10.0.22621.2715 (excluding) | |
| cpe:2.3:o:microsoft:windows_11_22h2:-:*:*:*:*:*:arm64:* | ||
| cpe:2.3:o:microsoft:windows_11_23h2:-:*:*:*:*:*:arm64:* | ||
| cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:windows:*:* | 6.3.9600.21813 (excluding) | |
| cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:windows:*:* | 10.0.14393.6452 (excluding) | |
| cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:x64:* | ||
| cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:x86:* | ||
| cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:windows:*:* | 6.2.9200.24710 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



