CVE detail
CVE-2024-21413
Microsoft Outlook Remote Code Execution Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 14.5 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
- U.S. CISA adds Microsoft Outlook, Sophos XG Firewall, and other flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Outlook, Sophos XG Firewall, and other flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: The vulnerability CVE-2024-21413 (CVSS score of 9.8) is a Remote Code Execution flaw in Microsoft Outlook. […]
newssecurityaffairs.comFeb 6, 2025, 10:36 PM - Microsoft enforces defenses preventing NTLM relay attacksHelp Net Security
Since making Kerberos the default Windows authentication protocol in 2000, Microsoft has been working on eventually retiring NTLM, its less secure and obsolete counterpart. Until NTLM gets disabled by default, Microsoft is working on shoring up defenses against NTLM relay attacks. How do NTLM relay attacks work? NTLM is a suite of Microsoft protocols that authenticate users and computers based on a challenge/response mechanism between the client (which seeks to be authenticated) and server (which … More →
newswww.helpnetsecurity.comDec 11, 2024, 12:59 PM Microsoft has rolled out new default security protections that mitigate NTLM relaying attacks across on-premises Exchange, AD CS, and LDAP services.
newswww.securityweek.comDec 10, 2024, 11:23 AM- 19th February – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 19th February, please download our Threat_Intelligence Bulletin. TOP ATTACKS AND BREACHES Romanian hospital patients’ data management system, Hipocrate IT Platform, was hit by a ransomware attack, leading to data encryption of over 20 Bucharest hospitals. The attack rendered the hospital staff resorting to manual […]
vendorresearch.checkpoint.comFeb 19, 2024, 12:10 PM Microsoft released its batch of monthly security updates this month covering 73 vulnerabilities, including two zero-day flaws exploited in the wild. While organizations should prioritize all critical and high-risk issues, there is one critical vulnerability in Outlook that researchers claim could open the door to trivial attacks that result in remote code execution. Dubbed MonikerLink […]
newswww.csoonline.comFeb 16, 2024, 8:49 PMMicrosoft says a newly patched Exchange Server vulnerability (CVE-2024-21410) has been exploited in attacks.
newswww.securityweek.comFeb 15, 2024, 11:11 AM- The Risks of the #MonikerLink Bug in Microsoft Outlook and the Big PictureCheck Point Research
Introduction Recently, Check Point Research released a white paper titled “The Obvious, the Normal, and the Advanced: A Comprehensive Analysis of Outlook Attack Vectors”, detailing various attack vectors on Outlook to help the industry understand the security risks the popular Outlook app may bring into organizations. As mentioned in the paper, we discovered an interesting […]
vendorresearch.checkpoint.comFeb 14, 2024, 3:40 PM - Microsoft patches two zero-days exploited by attackers (CVE-2024-21412, CVE-2024-21351)Help Net Security
On February 2024 Patch Tuesday, Microsoft has delivered fixes for 72 CVE-numbered vulnerabilities, including two zero-days (CVE-2024-21412, CVE-2024-21351) that are being leveraged by attackers in the wild. About CVE-2024-21412 and CVE-2024-21351 CVE-2024-21412 allows attackers to bypass the Microsoft Defender SmartScreen security feature with booby-trapped Internet Shortcut files. In late December 2023, Trend Micro researcher Peter Girnus and his colleagues in the ZDI Threat Hunting team discovered the Water Hydra APT leveraging the flaw to infect … More →
newswww.helpnetsecurity.comFeb 13, 2024, 7:56 PM Patch Tuesday: Microsoft pushes a massive batch of security-themed updates and calls urgent attention to exploits bypassing security features.
newswww.securityweek.comFeb 13, 2024, 7:01 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2024-38189CVSS 8.8 · High
Microsoft Project Remote Code Execution Vulnerability
- CVE-2026-55124CVSS 5.5 · Medium
Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
- CVE-2026-55899CVSS 7.8 · High
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2026-21258CVSS 5.5 · Medium
Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
- CVE-2025-47171CVSS 6.7 · Medium
Improper input validation in Microsoft Office Outlook allows an authorized attacker to execute code locally.
- CVE-2024-49033CVSS 7.5 · High
Microsoft Word Security Feature Bypass Vulnerability