CyberzSOC

Publication detail
← Back to advisories & guidance

2024-067: Multiple Vulnerabilities in Microsoft Products ↗ source

July 12, 2024 CERT-EU Advisory

Summary

On July 10, 2024, Microsoft addressed 139 vulnerabilities in its July 2024 Patch Tuesday update, including four zero-day vulnerabilities. Two zero-day vulnerabilities are actively exploited [1,2,3]. Additionally, five critical vulnerabilities leading to Remote Code Execution have been It is recommended updating as soon as possible. The zero-day vulnerability CVE-2024-38080, with a CVSS score of 7.8, allow attackers to gain SYSTEM privileges on the host machine, but initial local access is required to exploit the flaw, according to Microsoft [4]. The zero-day vulnerability CVE-2024-38112, with a CVSS score of 7.5, is a spoofing vulnerability in Windows MSHTML Platform that can be triggered with a specially crafted HTML file [5]. Exploitation of this vulnerability likely requires the use of an “attack chain” of exploits or programmatic changes on the target host.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2024-38074 9.8 Critical Microsoft Windows Server 2019 Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-38076 9.8 Critical Microsoft Windows Server 2019 Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-38077 9.8 Critical Microsoft Windows Server 2019 Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-38021 8.8 High Microsoft Microsoft Office 2019 Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-38060 8.8 High Microsoft Windows 10 Version 1809 Windows Imaging Component Remote Code Execution Vulnerability
CVE-2024-35264 8.1 High Microsoft .NET 6.0 .NET and Visual Studio Remote Code Execution Vulnerability
CVE-2024-38080 7.8 High Microsoft Windows Microsoft Windows Hyper-V contains a privilege escalation vulnerability that allows a local attacker with user permissions to gain SYSTEM privileges.
CVE-2024-38112 7.5 High Microsoft Windows Microsoft Windows MSHTML Platform contains a spoofing vulnerability that has a high impact to confidentiality, integrity, and availability.
CVE-2024-38023 7.2 High Microsoft Microsoft SharePoint Enterprise Server 2016 Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2024-37985 5.9 Medium Microsoft Windows 11 version 22H2 Windows Kernel Information Disclosure Vulnerability

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.