CVE-2024-49028
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2024-49028 is a newly disclosed vulnerability affecting Microsoft Excel. This remote code execution (RCE) issue allows an attacker to execute malicious code on a victim's system by tricking them into opening a specially crafted Excel file. Successful exploitation can result in the attacker gaining full control of the affected system, potentially leading to data theft or unauthorized system access. Microsoft is actively working on a patch to address this vulnerability, and users are encouraged to apply it as soon as it becomes available to protect against potential attacks. In the meantime, users should exercise caution when opening unexpected Excel files from untrusted sources.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.