CVE-2024-21338High· 7.8▾ Abyssal⚠ Exploited in the wild0dayPoC availableWindows Kernel Elevation of Privilege Vulnerability
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 42.9 · likelihood 12 · exploitation 25 · ransomware 5
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 2 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Jul 31.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Mar 25, 2024
Last analysed / modified upstream
60%
Exploit-DB · 8 GitHub repos (last check)
Added to the CISA catalog on Mar 4, 2024. Federal remediation due Mar 25, 2024. View catalog ↗
Windows Kernel Elevation of Privilege Vulnerability
windows_10_1809 < 10.0.17763.5458windows_10_21h2 < 10.0.19044.4046windows_10_22h2 < 10.0.19045.4046windows_11_21h2 < 10.0.22000.2777windows_11_22h2 < 10.0.22621.3155windows_11_23h2 < 10.0.22631.3155windows_server_2019 < 10.0.17763.5458windows_server_2022 < 10.0.20348.2322windows_server_2022_23h2 <= 10.0.25398.709Upgrade past the affected range:
windows_10_1809 10.0.17763.5458windows_10_21h2 10.0.19044.4046windows_10_22h2 10.0.19045.4046windows_11_21h2 10.0.22000.2777windows_11_22h2 10.0.22621.3155windows_11_23h2 10.0.22631.3155windows_server_2019 10.0.17763.5458windows_server_2022 10.0.20348.2322Connected by shared product, vendor, weakness, or advisory.
CVE-2022-21882High· 7.0Win32k Elevation of Privilege Vulnerability
CVE-2021-34486High· 7.8Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-36934High· 7.8An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) database
CVE-2024-35250High· 7.8Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVE-2026-78451Medium· 6.8Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.
CVE-2026-78444High· 8.1Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.