Lucene search

K
mscveMicrosoftMS:CVE-2024-21315
HistoryFeb 20, 2024 - 8:00 a.m.

Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability

2024-02-2008:00:00
Microsoft
msrc.microsoft.com
25
microsoft
defender
endpoint
privilege
vulnerability

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.3

Confidence

Low

EPSS

0

Percentile

9.0%

Affected configurations

Vulners
Node
microsoftdefender_for_endpointRange<10.0.25398.531
OR
microsoftdefender_for_endpointRange<10.0.19045.3693
OR
microsoftdefender_for_endpointRange<10.0.19045.3693
OR
microsoftdefender_for_endpointRange<10.0.22621.2715
OR
microsoftdefender_for_endpointRange<10.0.22631.2715
OR
microsoftdefender_for_endpointRange<6.3.9600.21813
OR
microsoftdefender_for_endpointRange<6.3.9600.21813
OR
microsoftdefender_for_endpointRange<10.0.14393.6452
OR
microsoftdefender_for_endpointRange<10.0.14393.6452
OR
microsoftdefender_for_endpointRange<10.0.14393.6452
OR
microsoftdefender_for_endpointRange<10.0.14393.6452
OR
microsoftdefender_for_endpointRange<6.2.9200.24710
OR
microsoftdefender_for_endpointRange<6.2.9200.24710
OR
microsoftdefender_for_endpointRange<10.0.19045.3693
OR
microsoftdefender_for_endpointRange<10.0.22621.2715
OR
microsoftdefender_for_endpointRange<10.0.22631.2715
OR
microsoftdefender_for_endpointRange<10.0.10240.20308
OR
microsoftdefender_for_endpointRange<10.0.10240.20308
OR
microsoftdefender_for_endpointRange<10.0.19043.3693
OR
microsoftdefender_for_endpointRange<10.0.19043.3693
OR
microsoftdefender_for_endpointRange<10.0.19041.3693
OR
microsoftdefender_for_endpointRange<10.0.22000.2600
OR
microsoftdefender_for_endpointRange<10.0.22000.2600
OR
microsoftdefender_for_endpointRange<6.2.9200.24569
OR
microsoftdefender_for_endpointRange<10.0.20348.2113
OR
microsoftdefender_for_endpointRange<10.0.17763.5122
OR
microsoftdefender_for_endpointRange<10.0.17763.5122
OR
microsoftdefender_for_endpointRange<10.0.17763.5122
OR
microsoftdefender_for_endpointRange<10.0.17763.5122
OR
microsoftdefender_for_endpointRange<10.0.17763.5122
VendorProductVersionCPE
microsoftdefender_for_endpoint*cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:*:*:*

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.3

Confidence

Low

EPSS

0

Percentile

9.0%