CVE-2024-43573

Windows MSHTML Platform Spoofing Vulnerability
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x86:*

Configuration 2 (hide)

OR cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x86:*

Configuration 3 (hide)

OR cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:x64:*

Configuration 4 (hide)

cpe:2.3:o:microsoft:windows_11_22h3:*:*:*:*:*:*:x64:*

Configuration 5 (hide)

cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*

Configuration 6 (hide)

cpe:2.3:o:microsoft:windows_server_23h2:*:*:*:*:*:*:*:*

Configuration 7 (hide)

OR cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x86:*

Configuration 8 (hide)

cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:x64:*

Configuration 9 (hide)

cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*

Configuration 10 (hide)

OR cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*

Configuration 11 (hide)

cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*

Configuration 12 (hide)

OR cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:x64:*

Configuration 13 (hide)

OR cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x86:*

Configuration 14 (hide)

cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*

Configuration 15 (hide)

OR cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*

Configuration 16 (hide)

cpe:2.3:o:microsoft:windows_server_2012_r2:*:*:*:*:*:*:x64:*

Configuration 17 (hide)

cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*

Configuration 18 (hide)

cpe:2.3:o:microsoft:windows_server_2012_r2:*:*:*:*:*:*:*:*

History

10 Oct 2024, 15:54

Type Values Removed Values Added
First Time Microsoft windows 10 1507
Microsoft windows 10 21h2
Microsoft windows 11 22h3
Microsoft windows 10 22h2
Microsoft windows 10 1607
Microsoft windows Server 2019
Microsoft windows Server 23h2
Microsoft windows Server 2016
Microsoft windows Server 2012 R2
Microsoft
Microsoft windows 11 22h2
Microsoft windows 11 24h2
Microsoft windows 10 1809
Microsoft windows 11 23h2
Microsoft windows Server 2022
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43573 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43573 - Patch, Vendor Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:microsoft:windows_11_22h3:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_server_2012_r2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_server_2012_r2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 8.1

09 Oct 2024, 16:16

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de suplantación de la plataforma MSHTML de Windows

08 Oct 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-08 18:15

Updated : 2024-10-10 15:54


NVD link : CVE-2024-43573

Mitre link : CVE-2024-43573

CVE.ORG link : CVE-2024-43573


JSON object : View

Products Affected

microsoft

  • windows_11_22h3
  • windows_11_23h2
  • windows_server_2016
  • windows_server_23h2
  • windows_10_1809
  • windows_11_22h2
  • windows_11_24h2
  • windows_server_2022
  • windows_10_22h2
  • windows_server_2019
  • windows_10_1607
  • windows_10_21h2
  • windows_server_2012_r2
  • windows_10_1507
CWE
NVD-CWE-noinfo CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')