CVE-2024-43572
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2024-43572 is a remote code execution vulnerability affecting Microsoft Management Console (MMC). Attackers can exploit this vulnerability by convincing a user to open a specially crafted MMC file, resulting in the execution of arbitrary code on the target system. Successful exploitation grants attackers the same privileges as the user running the MMC application. Microsoft strongly recommends installing the available patch as soon as possible to mitigate this risk. This vulnerability highlights the importance of securing software used for managing and configuring systems, and the need for users to exercise caution when opening files from untrusted sources.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.