CVE-2024-38089: Microsoft Defender For IoT

Critical severity, CVSS 9.9. EPSS: 1.2% chance of exploitation in the next 30 days.

Microsoft Defender for IoT Elevation of Privilege Vulnerability

Affected products

  • Microsoft Defender For IoT: before 24.1.4 (fixed in 24.1.4)

Published 2024-07-09. Last modified 2026-06-17.