CVE-2024-21378
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2024-21378 is a newly disclosed remote code execution vulnerability affecting Microsoft Outlook. Maliciously crafted emails can manipulate the software to execute arbitrary code on the victim's computer, potentially leading to unauthorized access, data theft, or system compromise. This issue poses a significant risk to organizations and individuals using Outlook, necessitating prompt patching and email security best practices. Microsoft has released a security update to address this vulnerability. Users are strongly encouraged to apply the patch as soon as possible to mitigate potential threats.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Office
- Microsoft Office Outlook
- Microsoft 365 Apps
- Microsoft Office 365
Affected Vendors
- Microsoft