CVE-2024-21379
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Feb 13, 2024
Updated: May 29, 2024
CWE ID 190
Summary
CVE-2024-21379 refers to a remote code execution vulnerability identified in Microsoft Word. Maliciously crafted documents can exploit this weakness, allowing attackers to execute arbitrary code on target systems. Successful exploitation can result in significant security risks, including data theft, unauthorized system access, and malware infection. Users are advised to update their Microsoft Office installations to the latest version, and be wary of opening untrusted documents, to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Office
- Microsoft Office Word
- Microsoft 365 Apps
- Microsoft Office 365
Affected Vendors
- Microsoft