CVE-2024-38213

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Aug 13, 2024
Updated: Aug 14, 2024
CWE ID 693

Summary

CVE-2024-38213 is a newly disclosed security vulnerability affecting Windows systems. This issue involves a Mark of the Web (MotW) security feature bypass, allowing malicious actors to gain unauthorized access to restricted resources. By manipulating MotW data, an attacker can trick the Windows kernel into granting elevated privileges, potentially leading to system compromise. The vulnerability poses a significant risk, as it can be exploited through specially crafted files or websites. Microsoft is working on a patch to address the issue and users are encouraged to apply it as soon as it becomes available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share