PT-2024-2781 · Microsoft · Windows

Published

2024-04-09

·

Updated

2025-01-08

·

CVE-2024-26189

CVSS v2.0

8.3

High

VectorAV:A/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue is related to the implementation of the Secure Boot protocol in Windows operating systems, specifically due to insufficient input validation. This can allow a remote attacker to bypass security restrictions by installing a malicious file with a .bcd extension. The vulnerability enables attackers to affect the system, potentially leading to security feature bypass.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2024-02919
CVE-2024-26189

Affected Products

Windows