Microsoft Defender Security Feature Bypass CVE-2023-24934
CVE-2023-24934 Published on April 14, 2023

Microsoft Defender Security Feature Bypass Vulnerability
Microsoft Defender Security Feature Bypass Vulnerability

Vendor Advisory NVD

Weakness Type

Missing Authentication for Critical Function

The software does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.


Products Associated with CVE-2023-24934

stack.watch emails you whenever new vulnerabilities are published in Microsoft Malware Protection Engine or Microsoft Malware Protection Platform. Just hit a watch button to start following.

 
 

Affected Versions

Microsoft Malware Protection Platform:

Exploit Probability

EPSS
0.97%
Percentile
76.52%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.