First published: Tue Aug 06 2024(Updated: )
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Microsoft Office Visio. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3.
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Visio Standard |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
ZDI-24-1095 is classified as a medium severity vulnerability.
To mitigate ZDI-24-1095, ensure that you apply the latest security updates from Microsoft for Office Visio.
Exploiting ZDI-24-1095 can potentially disclose sensitive information stored on affected installations.
An attacker must trick a user into visiting a malicious page or opening a malicious file to exploit ZDI-24-1095.
ZDI-24-1095 specifically affects installations of Microsoft Office Visio.