Exact rules name this CVE ID. Product rules name an affected product in their title. Related rules cover techniques used by actors who exploited this CVE. Showing the most relevant matches; the complete related set is on the full drill-down.
producthighSuspicious File Created in Outlook Temporary Directory
producthighSuspicious Outlook Macro Created
producthighPotential Persistence Via Outlook Form
producthighSuspicious Execution From Outlook Temporary Folder
producthighSuspicious Remote Child Process From Outlook
producthighSuspicious Outlook Child Process
Show all 15 top matches
producthighOutlook EnableUnsafeClientMailRules Setting Enabled
producthighPotential Persistence Via Outlook LoadMacroProviderOnBoot Setting
producthighPython Function Execution Security Warning Disabled In Excel
producthighPotential Excel.EXE DCOM Lateral Movement Via ActivateMicrosoftApp
producthighPotential Persistence Via Excel Add-in - Registry
producthighPython Function Execution Security Warning Disabled In Excel - Registry
productmediumMicrosoft Excel Add-In Loaded From Uncommon Location
productmediumSuspicious Scan Loop Network
productmediumSuspicious Usage of For Loop with Recursive Directory Search in CMD