CVE-2024-43461

Exploited in the Wild ✓ Confirmed 0-Day
Triaged: March 5, 2026 6 articles

EPSS Score

Source: FIRST.org · 2026-05-24
9.9%
probability
This CVE has a 9.9% probability of being exploited in the next 30 days.
0% Top 93.1th percentile of all CVEs 100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE. View on VulnerabilityLookup ↗

Attack Intelligence

Signal Intelligence

Confidence
85%
EPSS 9.9%
Mentions 6
Last Seen Mar 18, 2025

CNA Information

Analyst Note

CVE-2024-43461 is explicitly named as a zero-day in multiple BleepingComputer articles reporting active exploitation by state-sponsored groups since 2017. The CVE was published 2024-09-10 and patched in Microsoft's September 2024 Patch Tuesday, with exploitation documented prior to patch availability. The evidence of active in-the-wild exploitation with clear timing alignment supports zero-day classification.

Threat Actors 17

MuddyWater
apt_group Information theft and espionage 🇮🇷 IR
Lazarus Group
apt_group Information theft and espionage 🇰🇵 KP
Cobalt
apt_group Financial crime 🇷🇺 RU
APT37
apt_group Information theft and espionage 🇰🇵 KP
APT 28
apt_group Information theft and espionage 🇷🇺 RU
Kimsuky
apt_group Information theft and espionage 🇰🇷 KR
CHRYSENE
apt_group Information theft and espionage 🇮🇷 IR
UAC-0020
apt_group 🇺🇦 UA
SideWinder
apt_group 🇮🇳 IN
RAZOR TIGER
apt_group Information theft and espionage 🇮🇳 IN
Larva-208
apt_group 🇷🇺 RU
APT 22
apt_group Information theft and espionage 🇨🇳 CN
Void Banshee
apt_group unknown
TA571
apt_group 🇷🇺 RU
The White Company
apt_group Information theft and espionage 🇨🇳 CN
Mana Team
apt_group 🇨🇳 CN
APT 5
apt_group Information theft and espionage 🇨🇳 CN

Triage Info

Decided atMar 05, 2026