CVE-2024-43505

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 8, 2024
Updated: Oct 17, 2024
CWE ID 357

Summary

CVE-2024-43505 is a newly disclosed vulnerability affecting Microsoft Office Visio. This issue permits an attacker to execute arbitrary code remotely by manipulating specially crafted Visio files. Successful exploitation could lead to the installation of malware or unauthorized system access. Users are advised to update their Visio software as soon as patches become available to mitigate this risk. Failure to do so could expose organizations to potential security breaches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Office
  • Microsoft Office Long Term Servicing Channel
  • Microsoft 365 Apps
  • Microsoft Office 2019
  • Microsoft Office 365

Affected Vendors

  • Microsoft