A vulnerability classified as critical has been found in Microsoft Azure CycleCloud. This affects an unknown part. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2024-38195. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows. It has been rated as critical. Affected by this issue is some unknown functionality of the component Ancillary Function Driver for WinSock. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-38193. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Kernel Streaming Service Driver. The manipulation leads to race condition.
This vulnerability is known as CVE-2024-38191. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Office. It has been classified as critical. Affected is an unknown function of the component Project. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2024-38189. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows and classified as critical. This issue affects some unknown processing of the component Kernel-Mode Driver. The manipulation leads to untrusted pointer dereference.
The identification of this vulnerability is CVE-2024-38187. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability has been found in Microsoft Windows and classified as critical. This vulnerability affects unknown code of the component Kernel-Mode Driver. The manipulation leads to time-of-check time-of-use.
This vulnerability was named CVE-2024-38186. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, was found in Microsoft Windows. This affects an unknown part of the component Kernel-Mode Driver. The manipulation leads to untrusted pointer dereference.
This vulnerability is uniquely identified as CVE-2024-38185. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, has been found in Microsoft Windows. Affected by this issue is some unknown functionality of the component Kernel-Mode Driver. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2024-38184. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical was found in Microsoft Windows. Affected by this vulnerability is an unknown functionality of the component SmartScreen. The manipulation leads to protection mechanism failure.
This vulnerability is known as CVE-2024-38180. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Microsoft Windows. Affected is an unknown function of the component Scripting Engine. The manipulation leads to type confusion.
This vulnerability is traded as CVE-2024-38178. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
Earth Baku, yet another subgroup of the highly active and increasingly sophisticated collective, is moving into EMEA with new malware and living-off-the-land (LotL) tactics.
A vulnerability was found in Microsoft Windows App Installer. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to escaping of output.
The identification of this vulnerability is CVE-2024-38177. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Outlook. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to file inclusion.
This vulnerability was named CVE-2024-38173. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Excel. It has been classified as critical. This affects an unknown part. The manipulation leads to heap-based buffer overflow.
This vulnerability is uniquely identified as CVE-2024-38172. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft PowerPoint and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-38171. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
Computer infrastructure in the US, UK, and Germany associated with the cybercriminal group, which targeted SMBs using double extortion, is officially out of commission.
A vulnerability has been found in Microsoft Excel and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2024-38170. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, was found in Microsoft Office. Affected is an unknown function of the component Visio. The manipulation leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2024-38169. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, has been found in Microsoft .NET and Visual Studio. This issue affects some unknown processing. The manipulation leads to resource consumption.
The identification of this vulnerability is CVE-2024-38168. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.