CVE-2024-38014

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
10/09/2024
Last modified:
27/01/2025

Description

Windows Installer Elevation of Privilege Vulnerability

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x64:* 10.0.10240.20766 (excluding)
cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x86:* 10.0.10240.20766 (excluding)
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:* 10.0.14393.7336 (excluding)
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:* 10.0.14393.7336 (excluding)
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:*:* 10.0.17763.6293 (excluding)
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:* 10.0.19044.4894 (excluding)
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:* 10.0.19045.4894 (excluding)
cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:*:* 10.0.22000.3197 (excluding)
cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:*:* 10.0.22621.4169 (excluding)
cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:* 10.0.22631.4169 (excluding)
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:* 10.0.26100.1742 (excluding)
cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:x64:*