PT-2024-6728 · Microsoft · Office Visio

Luke Papandrea

·

Published

2024-10-08

·

Updated

2024-10-17

·

CVE-2024-43505

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Microsoft Office Visio (affected versions not specified)
Description: The issue is related to a lack of warning about dangerous actions in the Microsoft Office Visio graphic editor, which is part of Microsoft Office and Microsoft 365 Apps for Enterprise packages. Exploitation of this issue may allow an attacker to execute arbitrary code.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2024-07941
CVE-2024-43505

Affected Products

Office Visio