CVE-2024-43512 is a Denial of Service vulnerability affecting the Windows Standards-Based Storage Management Service across various Windows Server versions (2012, 2016, 2019, 2022). This vulnerability carries a CVSS score of 7.5 (HIGH), indicating it can be exploited remotely over the network with low attack complexity, leading to a complete denial of service without requiring user interaction or privileges. Currently, there is no public exploit code available, it is not listed in CISA's KEV catalog, and community discussion and media coverage are minimal, suggesting low active exploitation at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
r2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* | ||
< 10.0.14393.7428CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:* | ||
< 10.0.17763.6414CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:* | ||
< 10.0.20348.2762CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.