Microsoft Outlook Security Feature Bypass Vulnerability
CVE-2023-35311
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 11 July 2023
Badges
Summary
A security feature bypass vulnerability exists in Microsoft Outlook, allowing attackers to bypass intended security controls. This can enable unauthorized access or manipulation of sensitive data within the application, potentially leading to severe security implications for users. Users are encouraged to implement recommended updates and follow security best practices to mitigate the risks associated with this vulnerability.
CISA Reported
CISA provides regional cyber and physical services to support security and resilience across the United States. CISA monitor the most dangerious vulnerabilities and have identifed as being exploited but is not known by the CISA to be used in ransomware campaigns. This is subject to change at pace
The CISA's recommendation is: Apply updates per vendor instructions or discontinue use of the product if updates are unavailable.
Affected Version(s)
Microsoft 365 Apps for Enterprise 32-bit Systems 16.0.1
Microsoft Office 2019 32-bit Systems 19.0.0
Microsoft Office LTSC 2021 32-bit Systems 16.0.1
References
EPSS Score
39% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
- 👾
Exploit known to exist
- 🦅
CISA Reported
Vulnerability published
Vulnerability Reserved