Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2024-43479: Microsoft Power Automate Desktop Remote Code Execution Vulnerability

According to the CVSS metrics, successful exploitation of this vulnerability could lead to major loss of confidentiality (C:H), integrity (I:H) and availability (A:H). What does that mean for this vulnerability?

The attacker can execute arbitrary Desktop Flows scripts in the target user session by registering the machine to their own malicious Entra tenant, extracting the user’s Sid, and creating a malicious AD domain with the same Sid. This allows them to mint valid Entra ID tokens that the attacked machine will trust to run desktop automation in the session of the user with the matching Sid.

Microsoft Security Response Center
#vulnerability#mac#microsoft#rce#Power Automate#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2024-9370: Chromium: CVE-2024-9370 Inappropriate implementation in V8