CVE-2024-21420
Published Feb 13, 2024
Last updated a month ago
Overview
- Description
- Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
- Source
- secure@microsoft.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Severity
- HIGH
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
- secure@microsoft.com
- CWE-190
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "11175D86-F0D1-434C-811A-750CB5C17148", "versionEndExcluding": "10.0.10240.20469" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "C62CCD10-636D-4979-A90F-CDBDE048518B", "versionEndExcluding": "10.0.10240.20469" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "57927CA7-FE09-43AA-9F66-6E68EE3125D7", "versionEndExcluding": "10.0.14393.6709" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "077456FB-464C-4393-87A5-D9A2FD3A3A1A", "versionEndIncluding": "10.0.14393.6709" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:arm64:*", "vulnerable": true, "matchCriteriaId": "97FA2666-D83E-4645-AB34-B17DD82A705B", "versionEndExcluding": "10.0.17763.5458" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "9EF5A993-EF3B-4BE1-8325-62354DD7A7E7", "versionEndExcluding": "10.0.17763.5458" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "1957C71A-2CE0-4173-8BB6-0BE0E93E9BCC", "versionEndExcluding": "10.0.17763.5458" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:arm64:*", "vulnerable": true, "matchCriteriaId": "8B1DD5BA-167A-45DB-8BD5-C231755B1A07", "versionEndExcluding": "10.0.19044.4046" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "0F566229-0130-4578-89CB-DBB8B6F658BF", "versionEndExcluding": "10.0.19044.4046" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "5815DF79-63B2-4690-AC2E-23EDE1BC9101", "versionEndExcluding": "10.0.19044.4046" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:arm64:*", "vulnerable": true, "matchCriteriaId": "9A6AFF70-FED0-4AF5-9D8F-5C90BF982941", "versionEndExcluding": "10.0.19045.4046" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "88085285-0229-4033-BEB6-0BF4AD5EA72A", "versionEndExcluding": "10.0.19045.4046" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "A0B61E17-FC01-4FF3-BF96-37819033F412", "versionEndExcluding": "10.0.19045.4046" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:arm64:*", "vulnerable": true, "matchCriteriaId": "481C9CDC-7383-4D08-9608-BDA2F9FADB36", "versionEndExcluding": "10.0.22000.2777" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "60E272E2-0D33-4342-92C3-5D66C89DE531", "versionEndExcluding": "10.0.22000.2777" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:arm64:*", "vulnerable": true, "matchCriteriaId": "3F8D8343-22E1-4C56-9918-9430326AB9BD", "versionEndExcluding": "10.0.22621.3155" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "16B1BAB4-91BD-4105-81CF-EAFD3800CB85", "versionEndExcluding": "10.0.22621.3155" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:arm64:*", "vulnerable": true, "matchCriteriaId": "E2FB8ADD-663B-445B-B0F2-6B5E168D9E2E", "versionEndExcluding": "10.0.22631.3155" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "679CCD68-F014-452C-8D3F-F9D17329779C", "versionEndExcluding": "10.0.22631.3155" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "2127D10C-B6F3-4C1D-B9AA-5D78513CC996" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "AB425562-C0A0-452E-AABE-F70522F15E1A" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A7DF96F8-BA6A-4780-9CA3-F719B3F81074" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB18C4CE-5917-401E-ACF7-2747084FD36E" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "041FF8BA-0B12-4A1F-B4BF-9C4F33B7C1E7" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A9098F92-79E7-4762-A37C-99B4CFA8CDD1", "versionEndExcluding": "10.0.17763.5458" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C8F0436-3AFE-48BD-AE92-8F8392DD0A1D", "versionEndExcluding": "10.0.20348.2322" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B6FCF1A0-6B8E-457A-AB6A-2DE939B9D18B", "versionEndExcluding": "10.0.25398.709" } ], "operator": "OR" } ] } ]