📦 Defender For Iot

by Microsoft

🔍 What is Defender For Iot?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-38089

CRITICAL CVSS 9.1 Jul 9, 2024

This vulnerability in Microsoft Defender for IoT allows an authenticated attacker to elevate privileges to SYSTEM level on the affected device. It affects organizations using Microsoft Defender for Io...

CVE-2021-43882

CRITICAL CVSS 9.0 Dec 15, 2021

CVE-2021-43882 is a remote code execution vulnerability in Microsoft Defender for IoT that allows attackers to execute arbitrary code on affected systems by exploiting improper certificate validation....

CVE-2021-42311

CRITICAL CVSS 10.0 Dec 15, 2021

CVE-2021-42311 is a critical SQL injection vulnerability in Microsoft Defender for IoT that allows remote attackers to execute arbitrary code on affected systems. This affects organizations using Micr...

CVE-2021-42313

CRITICAL CVSS 10.0 Dec 15, 2021

CVE-2021-42313 is a critical SQL injection vulnerability in Microsoft Defender for IoT that allows remote attackers to execute arbitrary code on affected systems. This affects organizations using Micr...

CVE-2024-29054

HIGH CVSS 7.2 Apr 9, 2024

This vulnerability in Microsoft Defender for IoT allows authenticated attackers to elevate privileges within the system. Attackers could gain higher-level permissions than intended, potentially compro...

CVE-2024-21323

HIGH CVSS 8.8 Apr 9, 2024

This vulnerability allows remote attackers to execute arbitrary code on Microsoft Defender for IoT systems without authentication. It affects organizations using Microsoft Defender for IoT for securit...

CVE-2023-23379

HIGH CVSS 7.8 Feb 14, 2023

CVE-2023-23379 is an elevation of privilege vulnerability in Microsoft Defender for IoT that allows authenticated attackers to execute arbitrary code with SYSTEM privileges. This affects organizations...

CVE-2022-23265

HIGH CVSS 7.2 Mar 9, 2022

CVE-2022-23265 is a remote code execution vulnerability in Microsoft Defender for IoT that allows authenticated attackers to execute arbitrary code on affected systems. This affects organizations usin...

CVE-2021-43888

HIGH CVSS 7.5 Dec 15, 2021

Microsoft Defender for IoT contains an information disclosure vulnerability that allows authenticated attackers to read sensitive information from the system. This affects organizations using Microsof...

CVE-2021-42315

HIGH CVSS 8.8 Dec 15, 2021

CVE-2021-42315 is a remote code execution vulnerability in Microsoft Defender for IoT that allows authenticated attackers to execute arbitrary code on affected systems. This affects organizations usin...