Description
Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability
Reserved 2023-11-28 | Published 2024-01-09 | Updated 2024-12-31 | Assigner
microsoftMEDIUM: 4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
Problem types
CWE-843: Access of Resource Using Incompatible Type ('Type Confusion')
Product status
10.0.17763.0 before 10.0.17763.5329
affected
10.0.17763.0 before 10.0.17763.5329
affected
10.0.20348.0 before 10.0.20348.2227
affected
10.0.25398.0 before 10.0.25398.643
affected
10.0.14393.0 before 10.0.14393.6614
affected
10.0.14393.0 before 10.0.14393.6614
affected
6.0.6003.0 before 6.0.6003.22464
affected
6.0.6003.0 before 6.0.6003.22464
affected
6.0.6003.0 before 6.0.6003.22464
affected
6.1.7601.0 before 6.1.7601.26910
affected
6.1.7601.0 before 6.1.7601.26910
affected
6.2.9200.0 before 6.2.9200.24664
affected
6.2.9200.0 before 6.2.9200.24664
affected
6.3.9600.0 before 6.3.9600.21765
affected
6.3.9600.0 before 6.3.9600.21765
affected
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20662 (Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability) vendor-advisory
cve.org (CVE-2024-20662)
nvd.nist.gov (CVE-2024-20662)
Download JSON