cbcvebase.
CVE-2024-29054
published 2024-04-09

CVE-2024-29054: Microsoft Defender for IoT Elevation of Privilege Vulnerability

high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
Microsoft Defender for IoT Elevation of Privilege Vulnerability

Affected

5 ranges
VendorProductVersion rangeFixed in
github.comtraefik_traefik_v2>= 2.11.9 < 2.11.382.11.38
github.comtraefik_traefik_v3>= 3.1.3 < 3.6.93.6.9
microsoftdefender_for_iot>= 22.0.0 < 24.1.324.1.3
microsoftmicrosoft_defender_for_iot>= 22.0.0 < 24.1.324.1.3
msrcmicrosoft_defender_for_iot

CVSS provenance

nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
ghsa7.5HIGH
osv7.5HIGH