Microsoft Windows Kernel TOCTOU Race Condition Vulnerability
Microsoft — Windows 10 Version 1507
Windows Kernel Elevation of Privilege Vulnerability
7.0
68.2%
Vector breakdown
- Attack vector
- Local
- Attack complexity
- High
- Privileges required
- Low
- User interaction
- None
- Scope
- Unchanged
- Confidentiality
- High
- Integrity
- High
- Availability
- High
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
- Published
- Jun 11, 2024
- Modified
- Aug 4, 2026
- Added to KEV
- Oct 15, 2024
- Federal patch due
- Nov 5, 2024
CISA required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Weakness classification
Affected packages
Proof-of-concept & exploitation references
8 foundWeaponization
Public repositories whose name or description references CVE-2024-30088, found via a live GitHub search at request time. These are community-sourced signals, not a verified working exploit - cross-check each one before relying on it, and treat higher star counts and recent activity as (weak) corroboration, not proof.
- exploits-forsale/collateral-damage★ 528
Kernel exploit for Xbox SystemOS using CVE-2024-30088
updated Aug 15, 2026
- tykawaii98/CVE-2024-30088★ 289
updated Aug 15, 2026
- Zombie-Kaiser/CVE-2024-30088-Windows-poc★ 45
该漏洞存在于 NtQueryInformationToken 函数中,特别是在处理AuthzBasepCopyoutInternalSecurityAttributes 函数时,该漏洞源于内核在操作对象时对锁定机制的不当管理,这一失误可能导致恶意实体意外提升权限。
updated Aug 2, 2026
- NextGenPentesters/CVE-2024-30088-★ 8
🆘New Windows Kernel Priviledge Escalation Vulnerability
updated Dec 8, 2025
- Admin9961/CVE-2024-30088★ 2
Questa repository contiene una replica (tentativo di replica) scritto in Python per CVE-2024-30088.
updated Oct 10, 2025
- Justintroup85/exploits-forsale-collateral-damage★ 1
Kernel exploit for Xbox SystemOS using CVE-2024-30088
updated Aug 25, 2024
- FangFang-Yi/CVE-2024-30088★ 0
updated Jun 16, 2026
- th3g3ntl3m4n84/CVE-2024-30088__Windows-TOCTOU-exploit★ 0
This is a modified version of the original CVE-2024-30088 exploit, adapted to work in non-interactive environments (WinRM).
updated Apr 16, 2026
References
Frequently asked questions
What is CVE-2024-30088?
Windows Kernel Elevation of Privilege Vulnerability
How severe is CVE-2024-30088?
CVE-2024-30088 has a CVSS base score of 7.0 out of 10 (CVSS 3.1).
Is CVE-2024-30088 actively exploited in the wild?
Yes. CVE-2024-30088 is listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added Oct 15, 2024, meaning CISA has confirmed evidence of active exploitation. It is also flagged as used in ransomware campaigns.
What is the EPSS score for CVE-2024-30088?
68.2% - meaning FIRST.org's EPSS model estimates a 68.2% probability this vulnerability will be exploited in the wild within 30 days (99% percentile among all scored CVEs).
Is there exploit tooling available for CVE-2024-30088?
We found 8 public GitHub repositories referencing CVE-2024-30088, though none matched a known Nuclei template or Metasploit module at last check. Review each one before relying on it - see the proof-of-concept section above.
What type of vulnerability is CVE-2024-30088?
CVE-2024-30088 is classified under CWE-367 (CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition).
Cross-checked against
Impactr finds and proves whether CVE-2024-30088 - or flaws like it - are actually reachable in your own web apps and APIs, with a reproducible exploit as evidence.
Join the waitlist