HIGH
CVE-2024-43461
CVSS
8.8
KEV
Description
Windows MSHTML Platform Spoofing Vulnerability
Summary dbcve.org
A spoofing vulnerability in the Windows MSHTML platform allows attackers to misrepresent content, likely through manipulation of HTML rendering or security UI indicators, potentially tricking users into trusting malicious content.
Mitigation
Apply the Microsoft security update for CVE-2024-43461 through Windows Update or enterprise patch management systems.
Weakness (CWE)
CWE-451
EPSS Score
54.49%
Probability of exploitation in next 30 days
99th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.