CISA Known Exploited Vulnerability

CVE-2024-30051 Ransomware

Microsoft · DWM Core Library

Microsoft DWM Core Library Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-122
Ransomware Known

CISA description

Microsoft DWM Core Library contains a privilege escalation vulnerability that allows an attacker to gain SYSTEM privileges.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.