← KEV catalog
CISA known exploited vulnerability

CVE-2023-35311

Microsoft Outlook Security Feature Bypass Vulnerability

SOURCE FACT

Microsoft · Outlook

Microsoft Outlook contains a security feature bypass vulnerability that allows an attacker to bypass the Microsoft Outlook Security Notice prompt.

Required action

Apply updates per vendor instructions or discontinue use of the product if updates are unavailable.

CISA notes

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-35311; https://nvd.nist.gov/vuln/detail/CVE-2023-35311

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?