Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.832912
Category:Windows : Microsoft Bulletins
Title:Microsoft Windows Multiple Vulnerabilities (KB5036894)
Summary:This host is missing an important security; update according to Microsoft KB5036894
Description:Summary:
This host is missing an important security
update according to Microsoft KB5036894

Vulnerability Insight:
These vulnerabilities exist:

- CVE-2024-29062: Secure Boot Security Feature Bypass Vulnerability

- CVE-2024-26229: Windows CSC Service Elevation of Privilege Vulnerability

- CVE-2024-26180: Secure Boot Security Feature Bypass Vulnerability

Please see the references for more information on the vulnerabilities.

Vulnerability Impact:
Successful exploitation allows an attacker
to elevate privileges, execute arbitrary commands, disclose information,
bypass security restrictions, conduct spoofing and denial of service
attacks.

Affected Software/OS:
Microsoft Windows 11 version 21H2 for x64-based Systems.

Solution:
The vendor has released updates. Please see
the references for more information.

CVSS Score:
2.1

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-0001
CERT/CC vulnerability note: VU#155143
https://www.kb.cert.org/vuls/id/155143
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00598.html
https://www.oracle.com/security-alerts/cpujul2022.html
http://www.openwall.com/lists/oss-security/2022/03/18/2
Common Vulnerability Exposure (CVE) ID: CVE-2024-20665
BitLocker Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20665
Common Vulnerability Exposure (CVE) ID: CVE-2024-26180
Secure Boot Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26180
Common Vulnerability Exposure (CVE) ID: CVE-2024-26230
Windows Telephony Server Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26230
Common Vulnerability Exposure (CVE) ID: CVE-2024-26241
Win32k Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26241
Common Vulnerability Exposure (CVE) ID: CVE-2024-29062
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29062
Common Vulnerability Exposure (CVE) ID: CVE-2024-28923
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28923
Common Vulnerability Exposure (CVE) ID: CVE-2024-26254
Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26254
Common Vulnerability Exposure (CVE) ID: CVE-2024-26253
Windows rndismp6.sys Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26253
Common Vulnerability Exposure (CVE) ID: CVE-2024-20678
Remote Procedure Call Runtime Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20678
Common Vulnerability Exposure (CVE) ID: CVE-2024-29052
Windows Storage Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29052
Common Vulnerability Exposure (CVE) ID: CVE-2024-26211
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26211
Common Vulnerability Exposure (CVE) ID: CVE-2024-29050
Windows Cryptographic Services Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29050
Common Vulnerability Exposure (CVE) ID: CVE-2024-21447
Windows Authentication Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21447
Common Vulnerability Exposure (CVE) ID: CVE-2024-26244
Microsoft WDAC OLE DB Provider for SQL Server Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26244
Common Vulnerability Exposure (CVE) ID: CVE-2024-28901
Windows Remote Access Connection Manager Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28901
Common Vulnerability Exposure (CVE) ID: CVE-2024-26217
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26217
Common Vulnerability Exposure (CVE) ID: CVE-2024-26232
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26232
Common Vulnerability Exposure (CVE) ID: CVE-2024-29064
Windows Hyper-V Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29064
Common Vulnerability Exposure (CVE) ID: CVE-2024-28903
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28903
Common Vulnerability Exposure (CVE) ID: CVE-2024-23594
https://support.lenovo.com/us/en/product_security/LEN-132277
Common Vulnerability Exposure (CVE) ID: CVE-2024-29988
SmartScreen Prompt Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29988
Common Vulnerability Exposure (CVE) ID: CVE-2024-28898
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28898
Common Vulnerability Exposure (CVE) ID: CVE-2024-26218
Windows Kernel Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26218
Common Vulnerability Exposure (CVE) ID: CVE-2024-29061
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29061
Common Vulnerability Exposure (CVE) ID: CVE-2024-26172
Windows DWM Core Library Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26172
Common Vulnerability Exposure (CVE) ID: CVE-2024-26243
Windows USB Print Driver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26243
Common Vulnerability Exposure (CVE) ID: CVE-2024-26229
Windows CSC Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26229
Common Vulnerability Exposure (CVE) ID: CVE-2024-26240
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26240
Common Vulnerability Exposure (CVE) ID: CVE-2024-26239
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26239
Common Vulnerability Exposure (CVE) ID: CVE-2024-26194
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26194
Common Vulnerability Exposure (CVE) ID: CVE-2024-20669
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20669
Common Vulnerability Exposure (CVE) ID: CVE-2024-23593
Common Vulnerability Exposure (CVE) ID: CVE-2024-26214
Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26214
Common Vulnerability Exposure (CVE) ID: CVE-2024-26252
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26252
Common Vulnerability Exposure (CVE) ID: CVE-2024-26220
Windows Mobile Hotspot Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26220
Common Vulnerability Exposure (CVE) ID: CVE-2024-28902
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28902
Common Vulnerability Exposure (CVE) ID: CVE-2024-28900
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28900
Common Vulnerability Exposure (CVE) ID: CVE-2024-28897
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28897
Common Vulnerability Exposure (CVE) ID: CVE-2024-28896
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28896
Common Vulnerability Exposure (CVE) ID: CVE-2024-28925
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28925
Common Vulnerability Exposure (CVE) ID: CVE-2024-28924
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28924
Common Vulnerability Exposure (CVE) ID: CVE-2024-28919
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28919
Common Vulnerability Exposure (CVE) ID: CVE-2024-28921
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28921
Common Vulnerability Exposure (CVE) ID: CVE-2024-28922
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28922
Common Vulnerability Exposure (CVE) ID: CVE-2024-28920
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28920
Common Vulnerability Exposure (CVE) ID: CVE-2024-26228
Windows Cryptographic Services Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26228
Common Vulnerability Exposure (CVE) ID: CVE-2024-26208
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26208
Common Vulnerability Exposure (CVE) ID: CVE-2024-26207
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26207
Common Vulnerability Exposure (CVE) ID: CVE-2024-26242
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26242
Common Vulnerability Exposure (CVE) ID: CVE-2024-26237
Windows Defender Credential Guard Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26237
Common Vulnerability Exposure (CVE) ID: CVE-2024-26234
Proxy Driver Spoofing Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26234
Common Vulnerability Exposure (CVE) ID: CVE-2024-26210
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26210
Common Vulnerability Exposure (CVE) ID: CVE-2024-26158
Microsoft Install Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26158
Common Vulnerability Exposure (CVE) ID: CVE-2024-26205
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26205
Common Vulnerability Exposure (CVE) ID: CVE-2024-26200
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26200
Common Vulnerability Exposure (CVE) ID: CVE-2024-26179
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26179
Common Vulnerability Exposure (CVE) ID: CVE-2024-26255
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26255
Common Vulnerability Exposure (CVE) ID: CVE-2024-26250
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26250
Common Vulnerability Exposure (CVE) ID: CVE-2024-26248
Windows Kerberos Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26248
Common Vulnerability Exposure (CVE) ID: CVE-2024-26219
HTTP.sys Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26219
Common Vulnerability Exposure (CVE) ID: CVE-2024-26209
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26209
Common Vulnerability Exposure (CVE) ID: CVE-2024-26189
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26189
Common Vulnerability Exposure (CVE) ID: CVE-2024-26183
Windows Kerberos Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26183
Common Vulnerability Exposure (CVE) ID: CVE-2024-26175
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26175
Common Vulnerability Exposure (CVE) ID: CVE-2024-26171
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26171
Common Vulnerability Exposure (CVE) ID: CVE-2024-26168
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26168
Common Vulnerability Exposure (CVE) ID: CVE-2024-20693
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20693
CopyrightCopyright (C) 2024 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.