CVE-2024-43461CISA KEV
Microsoft Windows MSHTML Platform Spoofing Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows MSHTML Platform contains a user interface (UI) misrepresentation of critical information vulnerability that allows an attacker to spoof a web page. This vulnerability was exploited in conjunction with CVE-2024-38112.
- Product
- Windows
- Added to KEV
- 16 Sep 2024
- Federal remediation due
- 7 Oct 2024
- Known ransomware use
- Not reported