Microsoft · Windows Mobile Broadband Driver · CVE-2024-30005
Name of the Vulnerable Software and Affected Versions:
Windows Mobile Broadband Driver versions prior to Server 2022 23H2
Description:
The issue is related to an integer overflow in the Windows Mobile Broadband Driver, which can be exploited by connecting a malicious USB device, allowing remote attackers to execute arbitrary code and potentially compromise the device.
Recommendations:
For versions prior to Server 2022 23H2, apply security patches immediately to mitigate the risks. As a temporary workaround, consider restricting access to USB devices to minimize the risk of exploitation.