Security
Loading…

CVE-2024-43468

UNKNOWNKnown Exploited
Description

Microsoft Configuration Manager contains an SQL injection vulnerability. An unauthenticated attacker could exploit this vulnerability by sending specially crafted requests to the target environment which are processed in an unsafe manner enabling the attacker to execute commands on the server and/or underlying database.

Timeline
Published:February 12th, 2026 12:00 AM
Last modified:February 12th, 2026 12:00 AM
Added to KEV:February 12th, 2026
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Microsoft

Products

Configuration Manager
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute