← Back to browse · API

CVE-2024-43639

Severity
CRITICAL
CVSS
9.8
EPSS
0.08749
Risk score
42.26
CISA KEV
No
PoC
No
Published
2024-11-12
Modified
2025-07-08
First seen
2026-08-07
Aliases
EUVD-2024-40384, GHSA-2F2H-73PP-4P79
Products
Microsoft:Windows Server 2012 (Server Core installation) 6.2.9200.0 <6.2.9200.25165, Microsoft:Windows Server 2012 6.2.9200.0 <6.2.9200.25165, Microsoft:Windows Server 2012 R2 (Server Core installation) 6.3.9600.0 <6.3.9600.22267, Microsoft:Windows Server 2012 R2 6.3.9600.0 <6.3.9600.22267, Microsoft:Windows Server 2016 (Server Core installation) 10.0.14393.0 <10.0.14393.7515, Microsoft:Windows Server 2016 10.0.14393.0 <10.0.14393.7515, Microsoft:Windows Server 2019 (Server Core installation) 10.0.17763.0 <10.0.17763.6532, Microsoft:Windows Server 2019 10.0.17763.0 <10.0.17763.6532, Microsoft:Windows Server 2022 10.0.20348.0 <10.0.20348.2849, Microsoft:Windows Server 2022, 23H2 Edition (Server Core installation) 10.0.25398.0 <10.0.25398.1251, Microsoft:Windows Server 2025 (Server Core installation) 10.0.26100.0 <10.0.26100.2314, Microsoft:Windows Server 2025 10.0.26100.0 <10.0.26100.2314
Sources
euvd EUVD-2024-40384

Description

Windows KDC Proxy Remote Code Execution Vulnerability

References