支持本站 — 捐款将帮助我们持续运营

目标: 1000 元,已筹: 1000

100.0%
获取后续新漏洞提醒登录后订阅
一、 漏洞 CVE-2024-21413 基础信息
漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
Microsoft Outlook Remote Code Execution Vulnerability
来源: 美国国家漏洞数据库 NVD
Vulnerability Description
Microsoft Outlook Remote Code Execution Vulnerability
来源: 美国国家漏洞数据库 NVD
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
来源: 美国国家漏洞数据库 NVD
Vulnerability Type
输入验证不恰当
来源: 美国国家漏洞数据库 NVD
Vulnerability Title
Microsoft Outlook 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Microsoft Outlook是美国微软(Microsoft)公司的一套电子邮件应用程序。 Microsoft Outlook 存在安全漏洞。以下产品和版本受到影响:Microsoft Office 2019 for 32-bit editions,Microsoft Office 2019 for 64-bit editions,Microsoft 365 Apps for Enterprise for 32-bit Systems,Microsoft 365 Apps for Enterprise
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD
受影响产品
厂商产品影响版本CPE订阅
MicrosoftMicrosoft Office 2019 19.0.0 ~ https://aka.ms/OfficeSecurityReleases -
MicrosoftMicrosoft 365 Apps for Enterprise 16.0.1 ~ https://aka.ms/OfficeSecurityReleases -
MicrosoftMicrosoft Office LTSC 2021 16.0.1 ~ https://aka.ms/OfficeSecurityReleases -
MicrosoftMicrosoft Office 2016 16.0.0 ~ 16.0.5435.1001 -
二、漏洞 CVE-2024-21413 的公开POC
#POC 描述源链接神龙链接
1Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POChttps://github.com/duy-31/CVE-2024-21413POC详情
2Microsoft-Outlook-Remote-Code-Execution-Vulnerabilityhttps://github.com/xaitax/CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-VulnerabilityPOC详情
3Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - CVE-2024-21413 POChttps://github.com/r00tb1t/CVE-2024-21413-POCPOC详情
4Microsoft Outlook Information Disclosure Vulnerability (leak password hash)https://github.com/labesterOct/CVE-2024-21413POC详情
5CVE-2024-21413 PoC for THM Labhttps://github.com/CMNatic/CVE-2024-21413POC详情
6CVE-2024-21413 Açığını Kullanarak Giriş Bilgilerini Almahttps://github.com/MSeymenD/CVE-2024-21413POC详情
7Nonehttps://github.com/Mdusmandasthaheer/CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-VulnerabilityPOC详情
8Bu betik, Microsoft Outlook'ta keşfedilen ve CVSS değeri 9.8 olan önemli bir güvenlik açığı olan CVE-2024-21413 için bir kavram kanıtı (PoC) sunmaktadır. MonikerLink hatası olarak adlandırılan bu güvenlik açığı, yerel NTLM bilgilerinin potansiyel sızıntısı ve uzaktan kod çalıştırma olasılığı dahil olmak üzere geniş kapsamlı etkilere sahiptir.https://github.com/ahmetkarakayaoffical/CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-VulnerabilityPOC详情
9CVE-2024-21413 exploithttps://github.com/DevAkabari/CVE-2024-21413POC详情
10Nonehttps://github.com/dshabani96/CVE-2024-21413POC详情
11CVE-2024-21413 Microsoft Outlook RCE Exploithttps://github.com/X-Projetion/CVE-2024-21413-Microsoft-Outlook-RCE-ExploitPOC详情
12Nonehttps://github.com/th3Hellion/CVE-2024-21413POC详情
13This script is the Proof of Concept (PoC) of the CVE-2024-21413, a significant security vulnerability discovered in the Microsoft Windows Outlook having a strong 9.8 critical CVSS score. Named as #MonikerLink Bug, this vulnerability allows the attacker to execute the arbitrary code remotely on the victim's machine, thus becomes a full-fledged RCE. https://github.com/ShubhamKanhere307/CVE-2024-21413POC详情
14CVE-2024-21413 PoChttps://github.com/olebris/CVE-2024-21413POC详情
15This is a mailer that use console prompt to exploit this vulnerabilityhttps://github.com/DerZiad/CVE-2024-21413POC详情
16Nonehttps://github.com/Redfox-Secuirty/Unveiling-Moniker-Link-CVE-2024-21413-Navigating-the-Latest-Cybersecurity-LandscapePOC详情
17Microsoft Outlook Remote Code Execution Vulnerability.https://github.com/HYZ3K/CVE-2024-21413POC详情
18CVE-2024-21413 | Microsoft Outlook Remote Code Execution Vulnerability PoChttps://github.com/ThemeHackers/CVE-2024-21413POC详情
19Nonehttps://github.com/D1se0/CVE-2024-21413-Vulnerabilidad-Outlook-LABPOC详情
20Nonehttps://github.com/Cyber-Trambon/CVE-2024-21413-exploitPOC详情
21The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks using email. This showcases how network authentication vulnerabilities and phishing methods can be exploited to compromise systems.https://github.com/ArtemCyberLab/Project-NTLM-Hash-Capture-and-Phishing-Email-Exploitation-for-CVE-2024-21413POC详情
22Nonehttps://github.com/Redfox-Security/Unveiling-Moniker-Link-CVE-2024-21413-Navigating-the-Latest-Cybersecurity-LandscapePOC详情
23Nonehttps://github.com/PolarisXSec/CVE-2024-21413POC详情
24Nonehttps://github.com/MQKGitHub/Moniker-Link-CVE-2024-21413POC详情
25Nonehttps://github.com/yass2400012/Email-exploit-Moniker-Link-CVE-2024-21413-POC详情
26This repository contains research notes and a high-level proof-of-concept (PoC) for CVE-2024-21413, a vulnerability observed in certain mail clients when handling SMB/moniker-style links embedded in messages. The PoC and experiments documented here were performed in a controlled lab environment on systems.https://github.com/gurleen-147/CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability-PoCPOC详情
27Nonehttps://github.com/hau2212/Moniker-Link-CVE-2024-21413-POC详情
28Outlook exploitationhttps://github.com/mmathivanan17/CVE-2024-21413POC详情
29ב־13 בפברואר 2024 פרסמה Microsoft חולשת אבטחה חמורה ב־Microsoft Outlook, אשר קיבלה את הזיהוי CVE-2024-21413, ומוכרת בשם Moniker Link Vulnerability. החולשה מאפשרת לתוקף לעקוף את מנגנון Protected View של Outlookhttps://github.com/eylommaayan/THM---CVE-2024-21413-Moniker-Link-Microsoft-Outlook-POC详情
30Nonehttps://github.com/ViniciusFariasDev/cve-2024-21413-outlook-monikerlink-labPOC详情
31Nonehttps://github.com/dionissh/CVE-2024-21413POC详情
32Technical write-up on CVE-2024-21413 (Moniker Link vulnerability)https://github.com/securenetexpert/CVE-2024-21413-Moniker-Link-WriteupPOC详情
33Laboratorio criado para PenTest da Vuln CVE 2024-214113(MONIKER LINK)https://github.com/SallocinAvalcante/lab-SMB-responder-CVE-2024-21413POC详情
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC
三、漏洞 CVE-2024-21413 的情报信息
Please 登录 to view more intelligence information
四、漏洞 CVE-2024-21413 的评论

暂无评论


发表评论