logo

Largest Patch Tuesday since July includes two exploited in the wild, three critical vulnerabilities

ID: e27c948f-e4b5-5d79-9c41-2d7902c138f1

STIX ID: report--e27c948f-e4b5-5d79-9c41-2d7902c138f1

Feed Name: Cisco Talos

Threat Score
70/100

Date Published: 2024-10-08

Date Updated: 2026-04-27

Author: Jonathan Munshaw

...
...

Microsoft's October Patch Tuesday fixes 117 CVEs across its products, including two publicly known vulnerabilities actively exploited in the wild (CVE-2024-43572 in MMC and CVE-2024-43573 in MSHTML). The update also addresses a publicly disclosed Winlogon elevation-of-privilege (CVE-2024-43583) and three critical RCE issues — notably CVE-2024-43468 (CVSS 9.8) in Configuration Manager — and Cisco Talos released Snort rules to detect attempts to exploit several of these flaws.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.