WmsRepair Service Elevation of Privilege Vulnerability
CVE-2024-49107

7.3HIGH

Key Information:

Summary

The WmsRepair Service has a vulnerability that allows an attacker to elevate privileges, potentially enabling them to execute unauthorized actions on the affected system. This flaw poses significant risks, as it could allow malicious users to gain access to higher-level permissions than intended, compromising the integrity and confidentiality of sensitive data. It is essential for users and organizations utilizing this service to address this vulnerability promptly through available patches and updates to safeguard against possible exploitation.

Affected Version(s)

Windows 10 Version 1507 32-bit Systems 10.0.10240.0 < 10.0.10240.20857

Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.7606

Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.6659

References

EPSS Score

0% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre DatabaseMicrosoft Feed
.