VYPR

Phish Alert Button for Outlook

by Knowbe4

CVEs (2)

  • CVE-2024-29209MedMay 7, 2024
    risk 0.39cvss 6.0epss 0.00

    A medium severity vulnerability has been identified in the update mechanism of the Phish Alert Button for Outlook, which could allow an attacker to remotely execute arbitrary code on the host machine. The vulnerability arises from the application's failure to securely verify the…

  • CVE-2024-29210LowMay 7, 2024
    risk 0.18cvss 2.8epss 0.00

    A local privilege escalation (LPE) vulnerability has been identified in Phish Alert Button for Outlook (PAB), specifically within its configuration management functionalities. This vulnerability allows a regular user to modify the application's configuration file to redirect…