CVE-2024-30078Active Exploitation(microsoft / windows_10_1507)

MEDIUMCVSS 8.8 · HIGH

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch microsoft windows_10_1507 systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Windows Wi-Fi Driver Remote Code Execution Vulnerability

4.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10_1507
  • windows_10_1607
  • windows_10_1809
  • windows_10_21h2

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Peaked 1d ago at 1 mentions (2026-07-07); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
windows_10_1507windows_10_1607windows_10_1809windows_10_21h2windows_10_22h2windows_11_21h2windows_11_22h2windows_11_23h2windows_server_2008windows_server_2012

2 versions affected across 14 products

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-07-07: 1Mentions · 2026-09-11: 1Active Exploitation · 2026-07-07: 1Patch / Workaround · 2026-07-07: 1Patch / Workaround · 2026-09-11: 1Technical Details · 2026-07-07: 1Technical Details · 2026-09-11: 107-0709-11
Signal classification2 categories
Active Exploitation
150.0%
Patch
150.0%
Referenced assets1 URL
Classification over time
DateTotalLabels
2026-07-071
Active Exploitation1
2026-09-111
Patch1
Full discourse2 posts
  • nksistemas@nksistemas
    Patch

    Actualización Crítica KB5124008 para Windows 11: Cierre de la Brecha CVE-2024-30078 en MSHTML https://nksistemas.com/actualizacion-critica-kb5124008-para-windows-11-cierre-de-la-brecha-cve-2024-30078-en-mshtml/

    Post summary

    The text announces Microsoft’s critical KB5124008 update for Windows 11, which addresses the CVE‑2024‑30078 vulnerability in MSHTML, thereby providing a patch to close the issue.

    00020234
    6.2K followersView on X
  • Dev@computerauditor
    Active Exploitation

    New Zero-Day: CVE-2024-30078! Windows MSHTML RCE (CVSS 8.8). Exploited via crafted files, triggering heap overflow for RCE. Patch ASAP! Follow @computerauditor for more. #ZeroDay #RCE https://t.co/66HZ8zslpf

    Post summary

    CVE-2024-30078 is a Windows MSHTML RCE vulnerability (CVSS 8.8) that has already been exploited via crafted files, prompting an urgent patch recommendation.

    00010113
    148 followersView on X
CPE platform detail17 entries

17 of 17 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10_1507---
OSmicrosoftwindows_10_1607---
OSmicrosoftwindows_10_1809---
OSmicrosoftwindows_10_21h2---
OSmicrosoftwindows_10_22h2---
OSmicrosoftwindows_11_21h2---
OSmicrosoftwindows_11_22h2---
OSmicrosoftwindows_11_23h2---
OSmicrosoftwindows_server_2008--x64
OSmicrosoftwindows_server_2008--x86
OSmicrosoftwindows_server_2008r2--
OSmicrosoftwindows_server_2012---
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2022_23h2---

Explore more