RaqibCTI
CVE

CVE-2024-21413

P2
Microsoft Outlook Improper Input Validation Vulnerability
Microsoft · Office Outlook
Date added (CISA)
2025-02-06
Remediation due
2025-02-27
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date

Description

Microsoft Outlook contains an improper input validation vulnerability that allows for remote code execution. Successful exploitation of this vulnerability would allow an attacker to bypass the Office Protected View and open in editing mode rather than protected mode.

Source: NVD ↗ · CISA KEV Catalog ↗