CVE detail
CVE-2023-29324
Windows MSHTML Platform Security Feature Bypass Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 22.0 · diversity 9.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
8 source links · newest first
Akamai researchers document more vulnerabilities and patch bypasses leading to zero-click remote code execution in Microsoft Outlook.
newswww.securityweek.comDec 19, 2023, 7:40 PM- Russian APT Used Zero-Click Outlook ExploitSecurityWeek
Russian threat actor APT28 has been exploiting a no-interaction Outlook vulnerability in attacks against 14 countries.
newswww.securityweek.comDec 8, 2023, 1:40 PM - Week in review: Microsoft fixes two actively exploited bugs, MSI private code signing keys leakedHelp Net Security
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Dragos blocks ransomware attack, brushes aside extortion attempt A ransomware group has tried and failed to extort money from Dragos, the industrial cybersecurity firm has confirmed on Wednesday, and reassured that none of its systems or its Dragos Platform had been breached. Easily bypassed patch makes zero-click Outlook flaw exploitable again (CVE-2023-29324) Among the vulnerabilities fixed by Microsoft on May … More →
newswww.helpnetsecurity.comMay 14, 2023, 8:00 AM Microsoft has rolled out patches for a vulnerability allowing attackers to bypass mitigations for a critical Outlook zero-day leading to credentials theft.
newswww.securityweek.comMay 11, 2023, 11:03 AMResearchers shared technical details about a flaw in Windows MSHTML platform, tracked as CVE-2023-29324, that could be abused to bypass security protections. Cybersecurity researchers have shared details about a now-patched security flaw, tracked as CVE-2023-29324 (CVSS score: 6.5), in Windows MSHTML platform. An attacker can exploit the vulnerability by crafting a malicious URL that would evade zone checks. “An attacker can […]
newssecurityaffairs.comMay 11, 2023, 7:23 AMMicrosoft fixed a new vulnerability this week that could be used to bypass defenses the company put in place in March for a critical vulnerability in Outlook that Russian cyberspies exploited in the wild. That vulnerability allowed attackers to steal NTLM hashes by simply sending specifically crafted emails to Outlook users. The exploit requires no […]
newswww.csoonline.comMay 10, 2023, 6:41 PM- Easily bypassed patch makes zero-click Outlook flaw exploitable again (CVE-2023-29324)Help Net Security
Among the vulnerabilities fixed by Microsoft on May 2023 Patch Tuesday is CVE-2023-29324, a bug in the Windows MSHTML platform that Microsoft rates as “important.” Akamai’s research team and Ben Barnea, the researcher who’s credited with finding the flaw, disagree with that assessment, because “the new vulnerability [CVE-2023-29324] re-enables the exploitation of a critical vulnerability [CVE-2023-23397] that was seen in the wild and used by APT operators.” About CVE-2023-23397 CVE-2023-23397 is an EoP bug in … More →
newswww.helpnetsecurity.comMay 10, 2023, 2:51 PM - Microsoft fixes two actively exploited bugs, one used by BlackLotus bootkit (CVE-2023-29336, CVE-2023-24932)Help Net Security
For May 2023 Patch Tuesday, Microsoft has delivered fixes for 38 CVE-numbered vulnerabilities, including a patch for a Windows bug (CVE-2023-29336) and a Secure Boot bypass flaw (CVE-2023-24932) exploited by attackers in the wild. The two exploited bugs (CVE-2023-29336, CVE-2023-24932) CVE-2023-29336 is a vulnerability that allows attackers to gain SYSTEM privileges. Flagged by researchers with AV maker Avast, it seems probable that it’s being exploited to deliver malware. Microsoft has offered no details about the … More →
newswww.helpnetsecurity.comMay 9, 2023, 6:58 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2024-38049CVSS 6.6 · Medium
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
- CVE-2024-20652CVSS 8.1 · High
Windows HTML Platforms Security Feature Bypass Vulnerability
- CVE-2023-35384CVSS 5.4 · Medium
Windows HTML Platforms Security Feature Bypass Vulnerability
- CVE-2023-29335CVSS 7.5 · High
Microsoft Word Security Feature Bypass Vulnerability
- CVE-2023-29325CVSS 8.1 · High
Windows OLE Remote Code Execution Vulnerability
- CVE-2023-28283CVSS 8.1 · High
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability