微软2026年9月补丁星期二安全更新深度剖析:从 79 个 CVE 中筛选出已被在野利用的最高危零日漏洞。
CVE-2024-30051, an actively exploited zero-day in the Desktop Window Manager (DWM) that allows unprivileged local attackers or initial-access malware (QakBot) to gain complete SYSTEM privileges.
| CVE 编号 | 核心子系统 / 组件 | 影响程度 | CVSS | 是否在野利用? |
|---|---|---|---|---|
CVE-2024-30051 | Desktop Window Manager | Elevation of Privilege | 7.8 High | YES (In-The-Wild) |
CVE-2024-38014 | Windows Installer | Elevation of Privilege | 7.8 High | No |
CVE-2024-38018 | Windows Hyper-V | Remote Code Execution | 8.5 High | No |
CVE-2024-38119 | Windows MSHTML Platform | Security Feature Bypass | 5.4 Medium | YES (Prior Campaign) |
Read our line-by-line decompiled C source code analysis showing how an unchecked 32-bit addition allowed local malware to corrupt kernel heap pool structures.