cognitive cybersecurity intelligence

News and Analysis

Search

Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)

Microsoft has released fixes for 89 new security issues in its Patch Tuesday for November 2024. Two key vulnerabilities (CVE-2024-43451 and CVE-2024-49039), which are currently being exploited by attackers, allow them to elevate privileges on targeted Windows systems. Threats include disclosure of authentication credentials, access to resources, and executing code. Other notable patches include flaws in OpenSSL and Active Directory Certificate Services. Despite this, Microsoft rates the exploitability of these vulnerabilities as ‘likely less’.

Source: www.helpnetsecurity.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts