Rewterz
ICS: Siemens SINEMA Remote Connect Client Vulnerability
September 11, 2024
How-Threat-Intelligence-Can-Improve-Vulnerability-Management.
How Threat Intelligence Can Improve Vulnerability Management
September 11, 2024

CVE-2024-38226 – Microsoft Publisher Zero-Day Vulnerability Exploit in the Wild

Severity

High

Analysis Summary

CVE-2024-38226

Microsoft Publisher could allow a local authenticated attacker to bypass security restrictions. An attacker could exploit this vulnerability to bypass security feature to cause impact on confidentiality, integrity and availability.

Impact

  • Security Bypass

Indicators of Compromise

CVE

  • CVE-2024-38226

Affected Vendors

Microsoft

Affected Products

  • Microsoft Office 2016 (32-bit edition)
  • Microsoft Office 2019 - 19.0.0
  • Microsoft Office LTSC 2021 - 16.0.1
  • Microsoft Publisher 2016 - 16.0.0

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security Update Guide