CVE-2024-38200

Published Aug 12, 2024

Last updated 2 years ago

Overview

Description
Microsoft Office Spoofing Vulnerability
Source
secure@microsoft.com
NVD status
Modified
Products
365_apps, office, office_long_term_servicing_channel

Risk scores

CVSS 3.1

Type
Primary
Base score
6.5
Impact score
3.6
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Severity
MEDIUM

Weaknesses

nvd@nist.gov
NVD-CWE-noinfo
secure@microsoft.com
CWE-200

Social media

Hype score
Not currently trending
  1. Actively exploited CVE : CVE-2024-38200

    @transilienceai

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  2. Actively exploited CVE : CVE-2024-38200

    @transilienceai

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  3. 🔒 #CyberSecurity CVE-2024-38200 & CVE-2024-38201: Active Exploitation of Windows Defender — Dete… "Critical Windows Defender flaws are under active attack. Detect weaponization of native…" 🔗 https://t.co/g1aTeMuYZi #CyberSecurity #ThreatIntel #cve #zeroday #pa

    @SecurityAr58409

    23 Apr 2026

    57 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. PoC Exploit Released for Microsoft Office 0-day Flaw – CVE-2024-38200 Security researchers have released a proof-of-concept (PoC) exploit for the recently disclosed Microsoft Office vulnerability CVE-2024-38200, which could allow attackers to capture u... https://t.co/HQ8rDsBkaQ

    @SecurityAid

    6 Feb 2025

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Top 5 Trending CVEs: 1 - CVE-2024-50379 2 - CVE-2024-38200 3 - CVE-2024-12856 4 - CVE-2023-48788 5 - CVE-2024-7971 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    30 Dec 2024

    16 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. [1day1line] CVE-2024-38200: Microsoft Office NTLMv2 Leak Vulnerability Redirection to a UNC path allows you to bypass an error popup that starts when using ms-word:ofe|u|http:// and leak the NTLMv2 hash. https://t.co/6DYawMyXi4

    @hackyboiz

    28 Dec 2024

    2085 Impressions

    14 Retweets

    35 Likes

    19 Bookmarks

    0 Replies

    0 Quotes

  7. Actively exploited CVE : CVE-2024-38200

    @transilienceai

    30 Oct 2024

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  8. Actively exploited CVE : CVE-2024-38200

    @transilienceai

    29 Oct 2024

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  9. How to Mitigate CVE-2024-38200- A Critical 0-Day Microsoft Office Spoofing Vulnerability? Link: https://t.co/PWMAHl6Kv4

    @TheSecMaster1

    25 Oct 2024

    969 Impressions

    5 Retweets

    16 Likes

    5 Bookmarks

    0 Replies

    0 Quotes

Configurations

References

Sources include official advisories and independent security research.