Home

Description

Windows Distributed File System (DFS) Remote Code Execution Vulnerability

PUBLISHED Reserved 2024-03-22 | Published 2024-06-11 | Updated 2025-12-17 | Assigner microsoft




MEDIUM: 6.7CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N/E:U/RL:O/RC:C

Problem types

CWE-641: Improper Restriction of Names for Files and Other Resources

Product status

10.0.17763.0 (custom) before 10.0.17763.5936
affected

10.0.0 (custom) before 10.0.17763.5936
affected

10.0.17763.0 (custom) before 10.0.17763.5936
affected

10.0.17763.0 (custom) before 10.0.17763.5936
affected

10.0.20348.0 (custom) before 10.0.20348.2527
affected

10.0.22000.0 (custom) before 10.0.22000.3019
affected

10.0.19044.0 (custom) before 10.0.19044.4529
affected

10.0.22621.0 (custom) before 10.0.22621.3737
affected

10.0.19045.0 (custom) before 10.0.19045.4529
affected

10.0.22631.0 (custom) before 10.0.22631.3737
affected

10.0.22631.0 (custom) before 10.0.22631.3737
affected

10.0.25398.0 (custom) before 10.0.25398.950
affected

10.0.10240.0 (custom) before 10.0.10240.20680
affected

10.0.14393.0 (custom) before 10.0.14393.7070
affected

10.0.14393.0 (custom) before 10.0.14393.7070
affected

10.0.14393.0 (custom) before 10.0.14393.7070
affected

6.0.6003.0 (custom) before 6.0.6003.22720
affected

6.0.6003.0 (custom) before 6.0.6003.22720
affected

6.0.6003.0 (custom) before 6.0.6003.22720
affected

6.1.7601.0 (custom) before 6.1.7601.27170
affected

6.1.7601.0 (custom) before 6.1.7601.27170
affected

6.2.9200.0 (custom) before 6.2.9200.24919
affected

6.2.9200.0 (custom) before 6.2.9200.24919
affected

6.3.9600.0 (custom) before 6.3.9600.22023
affected

6.3.9600.0 (custom) before 6.3.9600.22023
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30063 (Windows Distributed File System (DFS) Remote Code Execution Vulnerability) vendor-advisory

msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30063 (Windows Distributed File System (DFS) Remote Code Execution Vulnerability) vendor-advisory

cve.org (CVE-2024-30063)

nvd.nist.gov (CVE-2024-30063)

Download JSON