Intel Name: Potential cve-2023-36874 exploitation – fake wermgr.exe creation
Date of Scan: January 16, 2025
Impact: Medium
Summary: “Potential CVE-2023-36874 Exploitation – Fake Wermgr.Exe Creation” refers to the detection of a suspicious file named “wermgr.exe” being created in an uncommon directory, which may indicate an attempted exploitation of CVE-2023-36874. This vulnerability can be exploited by attackers to execute malicious code, and the creation of the fake wermgr.exe file is a potential sign of such exploitation, often used to disguise malicious activity or evade detection.