CVE-2024-49132 Windows Remote Desktop Services Remote Code Execution Vulnerability

Information published.


CVE-2024-49082 Windows File Explorer Information Disclosure Vulnerability

Information published.


CVE-2024-38033 PowerShell Elevation of Privilege Vulnerability

To comprehensively address CVE-2024-38033, Microsoft released security updates on December 10, 2024 for all affected versions of Windows Server 2012 and Windows Server 2012 R2.

Microsoft recommends that customers running any of these products install the updates to be fully protected from the vulnerability. Customers whose systems are configured to receive automatic updates do not need to take any further action.


Chromium: CVE-2024-12053 Type Confusion in V8

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024) for more information.


CVE-2024-38199 Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulnerability

Added acknowledgements. This is an informational change only.


CVE-2024-49035 Partner.Microsoft.Com Elevation of Privilege Vulnerability

An improper access control vulnerability in [Partner.Microsoft.com](https://partner.microsoft.com/) allows an a unauthenticated attacker to elevate privileges over a network.


CVE-2024-49038 Microsoft Copilot Studio Elevation Of Privilege Vulnerability

Improper neutralization of input during web page generation (‘Cross-site Scripting’) in Copilot Studio by an unauthorized attacker leads to elevation of privilege over a network.


CVE-2024-49053 Microsoft Dynamics 365 Sales Spoofing Vulnerability

Information published.


CVE-2024-49052 Microsoft Azure PolicyWatch Elevation of Privilege Vulnerability

Missing authentication for critical function in Microsoft Azure PolicyWatch allows an unauthorized attacker to elevate privileges over a network.


CVE-2024-49054 Microsoft Edge (Chromium-based) Spoofing Vulnerability

Updated CWE value. This is an informational change only.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge