← back
CVE-2023-36584

Windows Mark of the Web Security Feature Bypass Vulnerability

CVSS 5.4 MEDIUMEPSS 3.1%● KEV
In short

Windows has a security feature called 'Mark of the Web' that warns users when they download files from the internet. This vulnerability allows attackers to bypass that warning, making it easier to trick users into running malicious files without seeing the safety alert.

Technical detail

A bypass vulnerability in Windows Mark of the Web mechanism allows threat actors to circumvent the security prompt that typically flags downloaded files. The vulnerability affects the file attribute/stream verification logic, enabling delivery of malicious executables without triggering user warnings under specific file handling conditions.

Summary generated and translated by AI from the official description.
Windows Mark of the Web Security Feature Bypass Vulnerability
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L/E:F/RL:O/RC:C

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →