CVE-2024-43479

Microsoft Power Automate Desktop Remote Code Execution Vulnerability
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.5 HIGH
NETWORK
HIGH
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
microsoftCNA
8.5 HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
VendorProductVersion
microsoftpower_automate
2.41 ≤
𝑥
< 2.41.178.24249
microsoftpower_automate
2.42 ≤
𝑥
< 2.42.331.24249
microsoftpower_automate
2.43 ≤
𝑥
< 2.43.249.24249
microsoftpower_automate
2.44 ≤
𝑥
< 2.44.55.24249
microsoftpower_automate
2.45 ≤
𝑥
< 2.45.404.24249
microsoftpower_automate
2.46 ≤
𝑥
< 2.46.181.24249
microsoftpower_automate
2.47 ≤
𝑥
< 2.47.119.24249
𝑥
= Vulnerable software versions