π¨ High CVSS 8.8 - MS Office Exploit Alert: CVE-2024-30040 π¨
β οΈ New MS Office & M365 bypass exploit!
Update immediately.
#MicrosoftSecurity#CyberSafety
π Details:
Bypasses OLE protections in MS Office apps.
Weaponised PoCs observed; no specific actor.
Exploit via crafted Office files with OLE links.
β οΈ Remediation: Applies to Chrome & Edge
Stable/Extended Stable channels.
Update browsers to version 124.0.6367.201/202.
Ensure all systems are on latest patch levels.
β οΈ Remediation:
Applies to ScreenConnect versions 23.9.7 and prior.
Update to the latest version immediately.
Ensure all systems are on the latest patch levels.
π Details:
Vulnerability allows remote code execution.
No user interaction needed for exploitation.
Attackers can create accounts with admin rights.