CVE-2024-38014CISA KEV
Microsoft Windows Installer Improper Privilege Management Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows Installer contains an improper privilege management vulnerability that could allow an attacker to gain SYSTEM privileges.
- Product
- Windows
- Added to KEV
- 10 Sep 2024
- Federal remediation due
- 1 Oct 2024
- Known ransomware use
- Not reported