CVE-2024-43645

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Nov 12, 2024
Updated: Nov 13, 2024
CWE ID 693

Summary

CVE-2024-43645 is a newly disclosed vulnerability affecting Windows Defender Application Control (WDAC), a critical security feature. The issue enables attackers to bypass WDAC, potentially allowing them to execute unapproved applications on targeted systems. This could lead to serious security breaches and data theft. The exact exploitation methods are not yet publicly known, but Microsoft has released a patch to address the vulnerability and is urging users to install it as soon as possible. This underscores the importance of keeping software up to date to protect against known vulnerabilities.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows

Affected Vendors

  • Microsoft