Microsoft Publisher Security Feature Bypass Vulnerability
History

Wed, 11 Sep 2024 15:30:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:x86:*
cpe:2.3:a:microsoft:office:2021:*:*:*:ltsc:*:x64:*
cpe:2.3:a:microsoft:office:2021:*:*:*:ltsc:*:x86:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 10 Sep 2024 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}

kev

{'dateAdded': '2024-09-10'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 10 Sep 2024 20:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C'}


Tue, 10 Sep 2024 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 10 Sep 2024 17:15:00 +0000

Type Values Removed Values Added
Description Microsoft Publisher Security Feature Bypass Vulnerability
Title Microsoft Publisher Security Feature Bypass Vulnerability
First Time appeared Microsoft
Microsoft office
Microsoft office Long Term Servicing Channel
Microsoft publisher
Weaknesses CWE-693
CPEs cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:publisher:2016:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:publisher:2016:*:*:*:*:*:x86:*
Vendors & Products Microsoft
Microsoft office
Microsoft office Long Term Servicing Channel
Microsoft publisher
References
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published: 2024-09-10T16:53:57.222Z

Updated: 2024-10-09T01:26:22.755Z

Reserved: 2024-06-11T22:36:08.225Z

Link: CVE-2024-38226

cve-icon Vulnrichment

Updated: 2024-09-10T18:54:18.197Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-10T17:15:25.267

Modified: 2024-09-12T01:00:01.133

Link: CVE-2024-38226

cve-icon Redhat

No data.