CVE-2023-24880

4.4MEDIUM

Windows SmartScreen Security Feature Bypass Vulnerability

Published: 3/14/2023Updated: 10/27/2025

CISA Known Exploited Vulnerability

Microsoft Windows SmartScreen contains a security feature bypass vulnerability that could allow an attacker to evade Mark of the Web (MOTW) defenses via a specially crafted malicious file.

Required Action:

Apply updates per vendor instructions.

Due Date:

2023-04-04

Known Ransomware Use

Description

Windows SmartScreen Security Feature Bypass Vulnerability

AI AnalysisPowered by AI

Affected Products

microsoftwindows_10_1607
microsoftwindows_10_1809
microsoftwindows_10_20h2
microsoftwindows_10_21h2
microsoftwindows_10_22h2
microsoftwindows_11_21h2
microsoftwindows_11_22h2
microsoftwindows_server_2016
microsoftwindows_server_2019
microsoftwindows_server_2022

References