Microsoft Defender for IoT Privilege Escalation CVE-2024-29054
CVE-2024-29054 Published on April 9, 2024

Microsoft Defender for IoT Elevation of Privilege Vulnerability
Microsoft Defender for IoT Elevation of Privilege Vulnerability

Vendor Advisory NVD

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2024-29054 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2024-29054

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2024-29054 are published in Microsoft Defender For Iot:

 

Affected Versions

Microsoft Defender for IoT:

Exploit Probability

EPSS
3.39%
Percentile
87.16%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.