CVE-2024-43468

Modified
Published: 08 Oct 2024, 17:35
Last modified:12 Feb 2026, 18:41

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
9.8 CRITICAL
v3.1 (cve.org)
EPSS Score
73.83% CRITICAL
74% probability +4.45%
KEV
Listed
CISA
1 listing
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

08 Oct 2024, 17:35
Published
Vulnerability first disclosed
12 Feb 2026, 00:00
Added to CISA KEV
Microsoft Configuration Manager SQL Injection Vulnerability
12 Feb 2026, 18:41
Last Modified
Vulnerability information updated
05 Mar 2026, 00:00
CISA Remediation Due
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Description
CVSS Metrics
EPSS Trends
Weaknesses (CWE)
KEV Details
Affected Systems
References (2)