-
AA20-195A: Critical Vulnerability in SAP NetWeaver AS Java
Original release date: July 13, 2020 Summary On July 13, 2020 EST, SAP released a Link Removed to address a critical vulnerability, Link Removed, affecting the SAP NetWeaver Application Server (AS) Java component LM Configuration Wizard. An unauthenticated attacker can exploit this...- News
- Thread
- access application attacker cisa configuration cve-2020-6287 cybersecurity data exploitation integrity java mitigation monitoring netweaver patch recommendations sap security system vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS17-014 - Important: Security Update for Microsoft Office (4013241) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (March 14, 2017): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An...- News
- Thread
- arbitrary code attacker bulletin computer important march microsoft ms17-014 office patch remote code execution risk security software technology update user rights version 1.0 vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS16-123 - Important: Security Update for Windows Kernel-Mode Drivers (3192892) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (October 11, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The more severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...- News
- Thread
- application attacker bulletin control drivers exploitation important kernel-mode microsoft ms16-123 october patch privilege revision security system technical update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-118 - Critical: Cumulative Security Update for Internet Explorer (3192887) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (October 11, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- admin rights attacker bulletin critical update cumulative update data security exploit internet explorer ms16-118 october patch remote code execution revision note security system control update user account user rights vulnerabilities webpage threats
- Replies: 0
- Forum: Security Alerts
-
MS16-104 - Critical: Cumulative Security Update for Internet Explorer (3183038) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (September 13, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- admin rights attacker critical cumulative update cybersecurity data security exploit extended security updates internet explorer malware prevention ms16-104 patch management remote code execution security september technet user rights vulnerabilities windows update
- Replies: 0
- Forum: Security Alerts
-
MS16-098 - Important: Security Update for Windows Kernel-Mode Drivers (3178466) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (August 9, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted...- News
- Thread
- 2016 attacker bulletin control crafted application drivers elevation important kernel-mode microsoft ms16-098 patch privilege revision security system update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-100 - Important: Security Update for Secure Boot (3179577) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (August 9, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass if an attacker installs an affected boot manager and bypasses Windows security...- News
- Thread
- 2016 attacker boot manager bypass microsoft ms16-100 revision note secure boot security security features update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-090 - Important: Security Update for Windows Kernel-Mode Drivers (3171481) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (July 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The more severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...- News
- Thread
- attacker bulletin control drivers elevation of privilege july kernel-mode ms16-090 revision note security system update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
MS16-070 - Critical: Security Update for Microsoft Office (3163610) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (June 14, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An attacker who...- News
- Thread
- arbitrary code attacker bulletin critical execution exploitation files june microsoft ms16-070 office patch remote code execution revision security software update user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
3155527 - Update to Cipher Suites for FalseStart - Version: 1.0
Revision Note: V1.0 (May 10, 2016): Advisory published. Summary: FalseStart allows the TLS client to send application data before receiving and verifying the server Finished message. This allows an attacker to launch a man-in-the-middle (MiTM) attack to force the TLS client to encrypt the first...- News
- Thread
- advisory application data attacker cipher cipher suites client downgrade attack encryption falsestart man-in-the-middle microsoft mitm network security revision note security tls transport layer security update version 1.0
- Replies: 0
- Forum: Security Alerts
-
MS15-124 - Critical: Cumulative Security Update for Internet Explorer (3116180) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (December 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2015 admin rights attacker bulletin critical cumulative exploitation internet explorer ms15-124 patch remote code execution security technet update user account user rights vulnerabilities webpage
- Replies: 0
- Forum: Security Alerts
-
MS15-135 - Important: Security Update for Windows Kernel-Mode Drivers to Address Elevation...
Severity Rating: Important Revision Note: V1.0 (December 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to a target system and runs a specially crafted...- News
- Thread
- 2015 application attacker bulletin critical drivers kernel-mode microsoft ms15-135 patch management privilege protection revision note security software system update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
MS15-105 - Important: Vulnerability in Windows Hyper-V Could Allow Security Feature Bypass...
Severity Rating: Important Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass if an attacker runs a specially crafted application that could cause Windows...- News
- Thread
- 2015 application attacker bulletin configuration extended security updates feature bypass hyper-v important microsoft ms15-105 patch revision note security technet update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS15-090 - Important: Vulnerabilities in Microsoft Windows Could Allow Elevation of...
Severity Rating: Important Revision Note: V1.0 (August 11, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted...- News
- Thread
- 2015 attacker bulletin crafted application elevation of privilege ms15-090 sandbox security update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
Security Update for SQL Server 2008 R2 Service Pack 2 (KB3045312)
A security issue has been identified in the SQL Server 2008 R2 SP2 that could allow an attacker to compromise your system and gain control over it. Link Removed- News
- Thread
- 2008 r2 attacker compromise control kb3045312 security service pack sql server update
- Replies: 0
- Forum: Live RSS Feeds
-
MS15-069 - Important: Vulnerabilities in Windows Could Allow Remote Code Execution...
Severity Rating: Important Revision Note: V1.0 (July 14, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow Remote Code Execution if an attacker first places a specially crafted dynamic link library (DLL) file...- News
- Thread
- attacker control cybersecurity dll exploitation malware microsoft ms15-069 patch remote code execution revision note rtf file security system protection update user rights vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
MS15-058 - Important: Vulnerabilities in SQL Server Could Allow Remote Code Execution...
Severity Rating: Important Revision Note: V1.0 (July 14, 2015): Bulletin published Summary: This security update resolves vulnerabilities in Microsoft SQL Server. The most severe vulnerabilities could allow remote code execution if an authenticated attacker runs a specially crafted query that is...- News
- Thread
- 2015 attacker authentication database execution risk function call memory management ms15-058 patch query execution remote code execution revision note security server security sql server technet technical bulletin update vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS15-063 - Important: Vulnerability in Windows Kernel Could Allow Elevation of Privilege...
Severity Rating: Important Revision Note: V1.0 (June 9, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker places a malicious .dll file in a local directory on the machine or...- News
- Thread
- attacker malicious dll ms15-063 network sharing privilege escalation security bulletin update vulnerability windows kernel windows security
- Replies: 0
- Forum: Security Alerts
-
MS15-054 - Important: Vulnerability in Microsoft Management Console File Format Could Allow...
Severity Rating: Important Revision Note: V1.0 (May 12, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a remote, unauthenticated attacker convinces a user to open a share containing a...- News
- Thread
- attacker denial of service file format management console microsoft ms15-054 security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS15-049 - Important: Vulnerability in Silverlight Could Allow Elevation of Privilege...
Severity Rating: Important Revision Note: V1.0 (May 12, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Silverlight. The vulnerability could allow elevation of privilege if a specially crafted Silverlight application is run on an affected system. To...- News
- Thread
- 2015 application attacker crafted application cybersecurity documentation elevation of privilege important microsoft ms15-049 patch privilege escalation revision note security silverlight update vulnerability
- Replies: 0
- Forum: Security Alerts