CVE-2024-21351Active Exploitation(microsoft / windows_10_1507)

MEDIUMCVSS 7.6 · HIGHCISA KEV

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch microsoft windows_10_1507 systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Windows SmartScreen Security Feature Bypass Vulnerability

4.5/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2024-03-05. Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weakness type (CWE)
CWE-94

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10_1507
  • windows_10_1607
  • windows_10_1809
  • windows_10_21h2

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-05-03); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
windows_10_1507windows_10_1607windows_10_1809windows_10_21h2windows_10_22h2windows_11_21h2windows_11_22h2windows_11_23h2windows_server_2016windows_server_2019

1 version affected across 12 products

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-05-03: 2Mentions · 2026-08-20: 1Active Exploitation · 2026-05-03: 1Patch / Workaround · 2026-05-03: 1Technical Details · 2026-08-20: 105-0308-20
Signal classification3 categories
Active Exploitation
133.3%
General
133.3%
Disclosure
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-05-032
Active Exploitation1General1
2026-08-201
Disclosure1
Full discourse3 posts
  • nksistemas@nksistemas
    Disclosure

    Vulnerabilidad Crítica en Microsoft Defender: Escalada de Privilegios a SYSTEM (CVE-2024-21351) https://nksistemas.com/vulnerabilidad-critica-en-microsoft-defender-escalada-de-privilegios-a-system-cve-2024-21351/

    Post summary

    The text announces a critical privilege‑escalation vulnerability in Microsoft Defender (CVE‑2024‑21351) without providing PoC, exploit code, or mitigation details.

    01021246
    6.2K followersView on X
  • Lyrie.ai@lyrie_ai
    Active Exploitation

    CVE-2024-21351. Status: ✅ Confirmed exploited in the wild Date added: 2024-02-13 Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

    Post summary

    CVE-2024-21351 has been confirmed to be exploited in the wild; users should follow vendor mitigations or stop using the software if a fix is unavailable.

    1001047
    152 followersView on X
  • Lyrie.ai@lyrie_ai
    General

    https://lyrie.ai/research/research/active-exploit-cve-2024-21351-windows #lyrie #cybersecurity #CVE #threatintel #zerodayattack

    Post summary

    The brief message only gives a URL and tags, offering no concrete technical details or evidence to classify it beyond a generic mention.

    0001029
    152 followersView on X
CPE platform detail12 entries

12 of 12 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10_1507---
OSmicrosoftwindows_10_1607---
OSmicrosoftwindows_10_1809---
OSmicrosoftwindows_10_21h2---
OSmicrosoftwindows_10_22h2---
OSmicrosoftwindows_11_21h2---
OSmicrosoftwindows_11_22h2---
OSmicrosoftwindows_11_23h2---
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2022_23h2---

Explore more