CVE-2024-43468

Microsoft Configuration Manager Remote Code Execution Vulnerability
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:configuration_manager_2403:-:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager_2409:-:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager_2503:-:*:*:*:*:*:*:*

History

13 Feb 2026, 14:04

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:microsoft:configuration_manager:2309:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager:2303:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager:2403:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager_2503:-:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager_2403:-:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager_2409:-:*:*:*:*:*:*:*
First Time Microsoft configuration Manager 2403
Microsoft configuration Manager 2503
Microsoft configuration Manager 2409
References () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-43468 - () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-43468 - US Government Resource

12 Feb 2026, 19:15

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-43468 -

10 Jan 2025, 15:07

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Microsoft
Microsoft configuration Manager
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43468 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43468 - Vendor Advisory
CPE cpe:2.3:a:microsoft:configuration_manager:2309:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager:2303:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:configuration_manager:2403:*:*:*:*:*:*:*

10 Oct 2024, 12:56

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de ejecución remota de código en Microsoft Configuration Manager

08 Oct 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-08 18:15

Updated : 2026-02-13 14:04


NVD link : CVE-2024-43468

Mitre link : CVE-2024-43468

CVE.ORG link : CVE-2024-43468


JSON object : View

Products Affected

microsoft

  • configuration_manager_2409
  • configuration_manager_2403
  • configuration_manager_2503
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')