CERT-In Issues Advisory on Microsoft Windows Vulnerabilities

13 Aug 2024

Vulnerabilities in Microsoft Windows: A CERT-In Advisory

The Indian Computer Emergency Response Team (CERT-In) has recently issued a cautionary advisory regarding several vulnerabilities identified in Microsoft Windows. These vulnerabilities affect Windows-based systems that utilize Virtualization Based Security (VBS) and Windows Backup. The versions impacted by this advisory include Windows 10, 11, and 12, along with various iterations of Windows Server.

What CERT-In Advisory Says

CERT-In's advisory highlights that “multiple vulnerabilities have been reported in Microsoft Windows which could allow an attacker to gain elevation of privilege on the targeted system.” This means that malicious actors could exploit these vulnerabilities to elevate their access rights, potentially reintroducing previously mitigated issues or circumventing VBS protections. The advisory categorizes the severity of this vulnerability as ‘medium’.

Software Affected

  • Windows Server 2016 (Server Core installation)
  • Windows Server 2016
  • Windows 10 Version 1607 for x64-based Systems
  • Windows 10 Version 1607 for 32-bit Systems
  • Windows 10 for x64-based Systems
  • Windows 10 for 32-bit Systems
  • Windows 11 Version 24H2 for x64-based Systems
  • Windows 11 Version 24H2 for ARM64-based Systems
  • Windows Server 2022, 23H2 Edition (Server Core installation)
  • Windows 11 Version 23H2 for x64-based Systems
  • Windows 11 Version 23H2 for ARM64-based Systems
  • Windows 10 Version 22H2 for 32-bit Systems
  • Windows 10 Version 22H2 for ARM64-based Systems
  • Windows 10 Version 22H2 for x64-based Systems
  • Windows 11 Version 22H2 for x64-based Systems
  • Windows 11 Version 22H2 for ARM64-based Systems
  • Windows 10 Version 21H2 for x64-based Systems
  • Windows 10 Version 21H2 for ARM64-based Systems
  • Windows 10 Version 21H2 for 32-bit Systems
  • Windows 11 version 21H2 for ARM64-based Systems
  • Windows 11 version 21H2 for x64-based Systems
  • Windows Server 2022 (Server Core installation)
  • Windows Server 2022
  • Windows Server 2019 (Server Core installation)
  • Windows Server 2019
  • Windows 10 Version 1809 for ARM64-based Systems
  • Windows 10 Version 1809 for x64-based Systems
  • Windows 10 Version 1809 for 32-bit Systems

What Should Users Do?

According to CERT-In, there are currently no patches available for this vulnerability as of the publication date. Users are therefore advised to ensure their devices are updated to the latest versions to mitigate potential risks.

The advisory underscores the importance of maintaining up-to-date systems and being vigilant about security updates. While the vulnerabilities have been categorized as medium in severity, the potential for exploitation underscores the need for proactive measures. As always, staying informed and prepared is key to navigating the ever-evolving landscape of cybersecurity threats.

Which Microsoft Office is best for Windows 11 Home?

For Windows 11 Home, the best Microsoft Office suite would be Microsoft 365. It provides the latest version of the Office applications like Word, Excel, PowerPoint, and more, along with continuous updates, cloud storage via OneDrive, and access to additional features and tools. It supports seamless integration with Windows 11 and offers various subscription plans to cater to different needs, making it a versatile and future-proof choice.

How to get Windows 10 product key from Microsoft account?

To get your Windows 10 product key from your Microsoft account, follow these steps: 1. Go to the Microsoft Account website and sign in with the account used to purchase or activate Windows 10. 2. Navigate to the 'Services & subscriptions' section. 3. Find your Windows 10 purchase or device and click on 'View details.' 4. Your product key should be listed there. If it’s not visible, it may be embedded in the hardware or stored by Microsoft digitally linked to your account.
Discover Microsoft Windows XP

Discover Microsoft Windows XP download for free to PC or mobile

Latest update Discover Microsoft Windows XP download for free for Windows PC or Android mobile

3
661 reviews
3936 downloads

News and reviews about Discover Microsoft Windows XP

14 May 2025

Microsoft Identifies Vulnerabilities, Updates Security Measures

Microsoft addressed 72 vulnerabilities, including five zero-day flaws, marking the eighth month without critical classification. Urgent patches respond to active exploitation risks.

Read more

25 Apr 2025

Windows Updates Unveil Risks with Inetpub Folder Appearance

Microsoft's recent update has led to security concerns due to the unexpected appearance of the 'inetpub' folder, potentially allowing hackers to exploit Windows systems.

Read more

09 Apr 2025

Microsoft's Milestones in Innovation and Computing History

From its 1970s inception to today, Microsoft's journey in computing innovation showcases key products like MS-DOS, Windows, and advancements in AI and cloud technology.

Read more

04 Mar 2025

CdkeySales Offers Significant Savings on Microsoft Software

CdkeySales provides major discounts on software keys for Windows 10, Windows 11, and Microsoft Office packages, offering a user-friendly purchasing process.

Read more

03 Mar 2025

CISA Identifies New Vulnerabilities Impacting Key Systems

CISA reports new vulnerabilities in Cisco routers and Windows. Agencies are urged to address these security issues by March 2025 to ensure protection.

Read more

03 Sep 2024

Mastering Windows 11 Keyboard Shortcuts Boosts Business Efficiency

Mastering keyboard shortcuts in Windows 11 enhances efficiency and transforms tasks into seamless operations. These shortcuts cover basic functions, start menu and taskbar navigation, screenshots, desktop management, and command prompt operations, significantly boosting productivity for users.

Read more

13 Aug 2024

CERT-In Warns Windows Users of Vulnerabilities in Multiple Versions

The Indian Computer Emergency Response Team (CERT-In) warns Windows users of vulnerabilities in various versions, including Windows 10, 11, and Server editions. Users should activate firewalls, update antivirus software, and stay informed about updates from Microsoft and CERT-In.

Read more

13 Aug 2024

Fortra Identifies Denial of Service Vulnerability in Microsoft Windows Systems

Fortra has discovered a Denial of Service vulnerability in Microsoft Windows, affecting versions 10, 11, and Server 2016, 2019, and 2022. The flaw, CVE-2024-6768, can cause system instability and data loss. Microsoft closed the case in February 2024, citing inability to reproduce the issue.

Read more

13 Aug 2024

Microsoft Windows Users Face Issues in India Due to CrowdStrike Update

Microsoft Windows users face issues due to a significant outage from a problematic CrowdStrike update. CERT-In has issued an alert highlighting vulnerabilities that could allow attackers to elevate privileges, particularly affecting systems with VBS and Windows Backup. Users should follow Microsoft's recommendations.

Read more

13 Aug 2024

CERT-In Issues Advisory on Microsoft Windows Vulnerabilities

The Indian Computer Emergency Response Team (CERT-In) has warned of vulnerabilities in Microsoft Windows, affecting versions 10, 11, and 12, as well as Windows Server 2016, 2019, and 2022. These medium-severity flaws could allow privilege escalation. Users should update to the latest versions.

Read more