CVE-2024-30090
Microsoft Streaming Service Elevation of Privilege Vulnerability
CVSS
7.0
High
EPSS
2.0%
p78
KEV
—
Exploit Today
23
0-100
Published: Jun 11, 2024 · Last modified: Jul 20, 2026 · CWE-822 · CWE-119
2.0%EPSS · 30 days2.0%
2026-06-302026-07-20
Microsoft Streaming Service Elevation of Privilege Vulnerability
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-352507.8 HIG97.7%
KEV—79Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability 15hCVE-2025-312778.8 HIG71.1%
KEV—71Apple Multiple Products Buffer Overflow Vulnerability6dCVE-2005-445910.0 NO 96.2%
——29Heap-based buffer overflow in the NAT networking components vmnat.exe and vmnet-natd in VMWare Workstation 5.5, GSX Server 3.2, ACE 1.0.1, and Player 1.0 allows remote authenticated attackers, including guests, to execute arbitrary code via crafted (1) EPRT and (2) PORT FTP commands.13dCVE-2026-78517.2 HIG89.6%
——27A vulnerability was identified in D-Link DI-8100 16.07.26A1. This affects the function sprintf of the file yyxz.asp. The manipulation of the argument ID leads to stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.11hCVE-2011-40454.3 NO 88.5%
——27Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of service via a crafted HTML document.12dCVE-2025-434338.8 HIG62.5%
——19The issue was addressed with improved memory handling. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously crafted web content may lead to memory corruption.6d