CVE-2023-24880CISA KEV
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows SmartScreen contains a security feature bypass vulnerability that could allow an attacker to evade Mark of the Web (MOTW) defenses via a specially crafted malicious file.
- Product
- Windows
- Added to KEV
- 14 Mar 2023
- Federal remediation due
- 4 Apr 2023
- Known ransomware use
- Yes