Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Windows 11 version 21H2 | 10.0.0 ~ 10.0.22000.2777 | - | |
| Microsoft | Windows 10 Version 1809 | 10.0.0 ~ 10.0.17763.5458 | - | |
| Microsoft | Windows 10 Version 21H2 | 10.0.19043.0 ~ 10.0.19044.4046 | - | |
| Microsoft | Windows Server 2022 | 10.0.20348.0 ~ 10.0.20348.2322 | - | |
| Microsoft | Windows 11 version 22H2 | 10.0.22621.0 ~ 10.0.22621.3155 | - | |
| Microsoft | Windows 10 Version 22H2 | 10.0.19045.0 ~ 10.0.19045.4046 | - | |
| Microsoft | Windows Server 2019 | 10.0.17763.0 ~ 10.0.17763.5458 | - | |
| Microsoft | Windows 11 version 22H3 | 10.0.22631.0 ~ 10.0.22631.3155 | - | |
| Microsoft | Windows 11 Version 23H2 | 10.0.22631.0 ~ 10.0.22631.3155 | - | |
| Microsoft | Windows Server 2022, 23H2 Edition (Server Core installation) | 10.0.25398.0 ~ 10.0.25398.709 | - | |
| Microsoft | Windows 10 Version 1809 | 10.0.17763.0 ~ 10.0.17763.5458 | - | |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0 ~ 10.0.17763.5458 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | according to trendmicro's research | https://github.com/wr00t/CVE-2024-21412_Water-Hydra | POC Details |
| 2 | according to trendmicro's research | https://github.com/lsr00ter/CVE-2024-21412_Water-Hydra | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-21410 | 9.8 CRITICAL | Microsoft Exchange Server Elevation of Privilege Vulnerability |
| CVE-2024-21413 | 9.8 CRITICAL | Microsoft Outlook Remote Code Execution Vulnerability |
| CVE-2024-21401 | 9.8 CRITICAL | Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability |
| CVE-2024-21364 | 9.3 CRITICAL | Microsoft Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2024-21403 | 9.0 CRITICAL | Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerabi |
| CVE-2024-21376 | 9.0 CRITICAL | Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerabil |
| CVE-2024-21352 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21345 | 8.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2024-21358 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21391 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21372 | 8.8 HIGH | Windows OLE Remote Code Execution Vulnerability |
| CVE-2024-21375 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21378 | 8.8 HIGH | Microsoft Outlook Remote Code Execution Vulnerability |
| CVE-2024-21370 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21368 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21367 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21365 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21420 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21359 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21353 | 8.8 HIGH | Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability |
Showing top 20 of 72 CVEs. View all on vendor page → →
No comments yet