Description
This detection identifies exploitation attempts targeting CVE-2023-36884, which has a HIGH severity rating. Microsoft's advisory names this issue the Windows Search Remote Code Execution Vulnerability, a flaw reachable through specially crafted Microsoft Office documents that lets cyberattackers execute code in the context of the logged on user.
Stats
- First seen
- July 2023
- Last seen
- September 2026
CVEs
Alert name variants
| Alert Name |
|---|
| Document-HTML.Exploit.CVE-2023-36884 |
| Document-Word.Exploit.CVE-2023-36884 |
| Email-MIME.Exploit.CVE-2023-36884 |
| Script.Exploit.CVE-2023-36884 |
| Shortcut.Exploit.CVE-2023-36884 |
| Win32.Exploit.CVE-2023-36884 |
