1.
NetSPI details CVE-2024-21378, authenticated RCE in Microsoft Outlook via synced form objects that sidestep the 2017 script allowlisting patch, weaponized through an updated Ruler pentesting tool.
Skip to content
Curated 1 security research writeups, vulnerability advisories and exploitation analyses for CVE-2024-21378.