CVE-2023-24880: Microsoft Windows SmartScreen Security Feature Bypass
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability. Microsoft Windows SmartScreen contains a security feature bypass vulnerability that could allow an attacker to evade Mark of the Web (MOTW) defenses via a specially crafted malicious file.
- CISA KEV-listed (remediation due 2023-04-04)
- used in ransomware campaigns
- EPSS 74.6% (98.9% percentile)