Microsoft Windows MSHTML Platform Spoofing Vulnerability
Microsoft · Windows
Date added (CISA)
2024-09-16
Remediation due
2024-10-07
Known ransomware use
Not indicated
Remediation priority
P2 — past CISA due date
Description
Microsoft Windows MSHTML Platform contains a user interface (UI) misrepresentation of critical information vulnerability that allows an attacker to spoof a web page. This vulnerability was exploited in conjunction with CVE-2024-38112.