Sploitus Analysis of CVE-2024 Vulnerabilities in Windows Services
Article Content
- •CVE-2024-38063 is a critical zero-click RCE vulnerability.
- •CVE-2024-38077 affects the Remote Desktop Licensing Service.
- •Metasploit was used for exploitation in controlled lab assessments.
Recent assessments have revealed vulnerabilities in Windows services, particularly focusing on CVE-2024-38063 and CVE-2024-38077. The vulnerabilities include a remote, zero-click exploit leading to Remote Code Execution (RCE) and issues in the Remote Desktop Licensing Service. The assessments were conducted in a controlled lab environment, utilizing tools like Metasploit for exploitation. The findings emphasize the importance of understanding the Common Vulnerability Scoring System (CVSS) for prioritizing vulnerabilities. Security professionals are urged to monitor these CVEs for potential exploitation in the wild. The assessments are part of an educational initiative in ethical hacking, highlighting the need for ongoing research into vulnerabilities and exploits.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2024-38063 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…