CVE-2024-38189CISA KEV
Microsoft Project Remote Code Execution Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Project contains an unspecified vulnerability that allows for remote code execution via a malicious file.
- Product
- Project
- Added to KEV
- 13 Aug 2024
- Federal remediation due
- 3 Sep 2024
- Known ransomware use
- Not reported