Microsoft Urges Swift Action on CVE-2024-38112 Vulnerability Patch

26 Jul 2024

Check Point recently uncovered a remote code execution vulnerability, known as CVE-2024-38112, affecting Microsoft Windows users and various versions of Windows Server. The attackers exploited Windows Internet Shortcut files to trigger the retired Internet Explorer to access a URL with a hidden malicious extension under their control. By leveraging Internet Explorer instead of more secure browsers like Chrome or Edge, the threat actors gained an upper hand in compromising the victim’s device.

Deceptive Tactics and High-Severity Vulnerability

The attackers also employed a deceptive tactic where they tricked the victim into thinking they were opening a PDF file, when in reality, they were downloading and running a hazardous .hta application, as noted by the Check Point researchers. This high-severity vulnerability has been added to the Cybersecurity and Infrastructure Security Agency’s Known Exploited Vulnerabilities Catalog with a severity score of 7.5 due to active exploitation. Federal agencies have been instructed to update or shut down all Windows systems by July 30 to mitigate the risk.

Analysis and Urgency

Further analysis reveals that out of approximately 500,000 endpoints running Windows 10 and 11, over 10% lack endpoint protection controls and nearly 9% do not have patch management controls in place. This leaves these organizations vulnerable to potential attacks. Despite Microsoft releasing a patch on July 9, some instances of exploitation of this vulnerability date back more than a year, emphasizing the urgency for organizations to take swift action in securing their systems.

What is microsoft windows desktop?

Microsoft Windows Desktop refers to the graphical user interface provided by Microsoft Windows operating systems. It includes the desktop environment where users can manage files, run applications, and access system settings. The desktop typically features icons, a taskbar, and a start menu for easy navigation. This environment is fundamental to the user experience in Windows, providing a platform for multitasking and interaction with the computer's software and hardware components.
Discover Microsoft Windows XP

Discover Microsoft Windows XP download for free to PC or mobile

Latest update Discover Microsoft Windows XP download for free for Windows PC or Android mobile

3
661 reviews
3951 downloads

News and reviews about Discover Microsoft Windows XP

23 Oct 2025

Patch SMB Vulnerability to Protect Older Windows Systems

CVE-2025-33073, a severe SMB flaw impacting older Windows, urges immediate updates for SMB security.

Read more

21 Oct 2025

Prioritize CVE-2025-33073 Patch for Windows Users

Windows users urged to update for CVE-2025-33073. This vulnerability affects Server, 10, 11, necessitating quick action to avoid privilege escalation.

Read more

17 Oct 2025

CISA Adds Key Software Flaws to Exploited Vulnerabilities List

CISA updates KEV catalog with vulnerabilities found in several software, urging federal agencies to fix by 2025-11-04.

Read more

15 Oct 2025

October Patch Tuesday Fixes 167 Vulnerabilities Including Critical RCE

Microsoft's October Patch Tuesday addresses 167 vulnerabilities, including critical RCE flaws in WSUS and Microsoft Office.

Read more

05 Oct 2025

How to Recover Files and Folders Hidden by Virus in Windows XP

Learn how to recover files and folders hidden by a virus in Windows XP. Discover Microsoft Windows XP for effective solutions.

Read more

26 Aug 2025

Microsoft Addresses Wide Range of Security Vulnerabilities

Microsoft has released updates addressing 111 vulnerabilities, including critical and important issues. Key fixes target privilege-escalation bugs in Exchange Server and security flaws in Windows platforms.

Read more

14 May 2025

Microsoft Identifies Vulnerabilities, Updates Security Measures

Microsoft addressed 72 vulnerabilities, including five zero-day flaws, marking the eighth month without critical classification. Urgent patches respond to active exploitation risks.

Read more

25 Apr 2025

Windows Updates Unveil Risks with Inetpub Folder Appearance

Microsoft's recent update has led to security concerns due to the unexpected appearance of the 'inetpub' folder, potentially allowing hackers to exploit Windows systems.

Read more

09 Apr 2025

Microsoft's Milestones in Innovation and Computing History

From its 1970s inception to today, Microsoft's journey in computing innovation showcases key products like MS-DOS, Windows, and advancements in AI and cloud technology.

Read more

04 Mar 2025

CdkeySales Offers Significant Savings on Microsoft Software

CdkeySales provides major discounts on software keys for Windows 10, Windows 11, and Microsoft Office packages, offering a user-friendly purchasing process.

Read more