CVE-2024-26169
Published Mar 12, 2024
Last updated 5 months ago
- Description
- Windows Error Reporting Service Elevation of Privilege Vulnerability
- Source
- secure@microsoft.com
- NVD status
- Analyzed
- Products
- windows_10_1507, windows_10_1607, windows_10_1809, windows_10_21h2, windows_10_22h2, windows_11_21h2, windows_11_22h2, windows_11_23h2, windows_server_2008, windows_server_2012, windows_server_2016, windows_server_2019, windows_server_2022, windows_server_2022_23h2
CVSS 3.1
- Type
- Secondary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
Data from CISA
- Vulnerability name
- Microsoft Windows Error Reporting Service Improper Privilege Management Vulnerability
- Exploit added on
- Jun 13, 2024
- Exploit action due
- Jul 4, 2024
- Required action
- Apply updates per vendor instructions or discontinue use of the product if updates are unavailable.
- secure@microsoft.com
- CWE-269
- nvd@nist.gov
- NVD-CWE-noinfo
- Hype score
- Not currently trending
Ransomware vulns with highest exploit likelihood ⬆️ (past 30d): - CVE-2015-2291 (IQVW32.sys (BYO..) +23.34% - CVE-2024-26169 (Windows Error R..) +9.58% - CVE-2023-20269 (ASA..) +6.84% - CVE-2023-20269 (FTD..) +6.84% - CVE-2022-27510 (NetScaler ADC..) +6.76%
@DefusedCyber
15 Sept 2025
8370 Impressions
10 Retweets
79 Likes
38 Bookmarks
1 Reply
1 Quote
Actively exploited CVE : CVE-2024-26169
@transilienceai
9 Sept 2025
53 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
Ransomware vulns with highest exploit likelihood ⬆️ (past 30d): - CVE-2025-53770 (SharePoint..) +25.40% - CVE-2023-20269 (ASA..) +24.24% - CVE-2023-20269 (FTD..) +24.24% - CVE-2024-26169 (Windows Error R..) +9.58% - CVE-2022-27510 (NetScaler ADC..) +6.76%
@DefusedCyber
8 Sept 2025
5121 Impressions
9 Retweets
43 Likes
18 Bookmarks
2 Replies
2 Quotes
Actively exploited CVE : CVE-2024-26169
@transilienceai
8 Sept 2025
87 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
Actively exploited CVE : CVE-2024-26169
@transilienceai
6 Sept 2025
57 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
Actively exploited CVE : CVE-2024-26169
@transilienceai
5 Sept 2025
64 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:*:*",
"matchCriteriaId": "7C9C29C6-636E-4023-88E0-8A8C4DDD3FA4",
"versionEndExcluding": "10.0.10240.20526",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "EA2CA05A-8688-45D6-BC96-627DEB1962E4",
"versionEndExcluding": "10.0.14393.6796",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "F7C03B8B-2E86-4FEB-9925-623CC805AD34",
"versionEndExcluding": "10.0.14393.6796",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:arm64:*",
"matchCriteriaId": "54A84FB6-B0C7-437B-B95A-F2B4CF18F853",
"versionEndExcluding": "10.0.17763.5576",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "4C9B0826-AE47-44B1-988F-6B5CEFB45BD5",
"versionEndExcluding": "10.0.17763.5576",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "E037C8AE-56A8-4507-A34B-371A7D49F28D",
"versionEndExcluding": "10.0.17763.5576",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "2CA95D8E-CAD9-4D07-AE35-36D83D546AA8",
"versionEndExcluding": "10.0.19044.4170",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "968B931A-18E6-4425-B326-5A02C0B93A08",
"versionEndExcluding": "10.0.19045.4170",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "D08CEC8B-343C-486E-B6FA-F4D60ACF7E63",
"versionEndExcluding": "10.0.22000.2836",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "4DBD4A55-729C-4F86-AE29-6067F62FD03A",
"versionEndExcluding": "10.0.22621.3296",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "A332CC68-568F-406B-8463-9FEF359BEA4C",
"versionEndExcluding": "10.0.22631.3296",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*",
"matchCriteriaId": "2127D10C-B6F3-4C1D-B9AA-5D78513CC996",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*",
"matchCriteriaId": "AB425562-C0A0-452E-AABE-F70522F15E1A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
"matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*",
"matchCriteriaId": "DB18C4CE-5917-401E-ACF7-2747084FD36E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*",
"matchCriteriaId": "041FF8BA-0B12-4A1F-B4BF-9C4F33B7C1E7",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
"matchCriteriaId": "FFF3EE72-52DE-4CB2-8D42-74809CD7B292",
"versionEndExcluding": "10.0.17763.5576",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
"matchCriteriaId": "5F08760C-CF31-4507-8CBD-21A2FEAE478C",
"versionEndExcluding": "10.0.20348.2333",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "0AD05A2D-BA23-4B63-8B75-1395F74C36CB",
"versionEndExcluding": "10.0.25398.763",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]