Hello,
Today we published Security Advisory 2659883 to provide a workaround to help protect ASP.NET customers from a publicly disclosed vulnerability that affects various Web platforms industry-wide. We are not aware of any attacks using this vulnerability, which affects all supported versions...
advisory
asp.net
customers
defense
exploit
framework
hash tables
industry
information
microsoft
mitigation
protection
research
security
trustworthy
twitter
update
vulnerability
web platforms
workaround
Resolves a vulnerability in Microsoft Windows that could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to exploit the vulnerability.
More...
Severity Rating: Important
Revision Note: V1.0 (December 13, 2011): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all...
administrative rights
affected software
attack
bulletin
december 2011
execution
exploit
important
ms11-093
ole
patch management
privately reported
remote code
security update
software security
user accounts
user rights
vulnerability
windows server
windows xp
Severity Rating: Important
Revision Note: V1.0 (December 13, 2011): Bulletin published.
Summary: This security update resolves two privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially...
Hi everyone,
Today we released Security Advisory 2639568 to provide customer guidance for the Windows kernel issue related to the Duqu malware. I would like to provide you information on how to protect your system(s), how we are addressing the issue, and insight into our threat landscape...
Resolves a vulnerability in Microsoft Windows that could allow remote code execution if a user opens a legitimate rich text format file (.rtf), text file (.txt) or Word document (.doc) that is located in the same network directory as a specially crafted...
More...
Severity Rating: Critical
Summary: This security update resolves one publicly disclosed vulnerability and five privately reported vulnerabilities in Microsoft Office. The most severe vulnerability could allow remote code execution if a user opens or previews a specially crafted RTF...
Severity Rating: Important
Revision Note: V4.0 (August 9, 2011): Added Microsoft Visual Studio 2010 Service Pack 1 (KB2565057) and Microsoft Visual C++ 2010 Redistributable Package Service Pack 1 (KB2565063) as Affected Software. See the update FAQ for details. Also corrected the...
Severity Rating: Important
Revision Note: V1.0 (August 9, 2011): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all...
Resolves vulnerabilities in the Windows OpenType Font (OTF) driver that could allow remote code execution if an attacker hosts a specially crafted OTF file on a network share and convinces users to navigate there using Windows Explorer.
More...
Resolves a vulnerability in Microsoft Windows that could allow remote code execution if a user opens a file type such as .eml and .rss (Windows Live Mail) and .wpost (Microsoft Live Writer) located in the same network folder as a specially crafted...
More...
cybersecurity
eml
exploit
folder
kb article
microsoft
microsoft live writer
network
patch
remote code execution
resolution
rss
security
threat
update
vulnerability
windows
windows live mail
wpost
Resolves a vulnerability in Windows that could allow could allow remote code execution if a user opens a legitimate Excel-related file (such as a .xlsx file) that is located in the same network directory as a specially crafted library file.
More...
activity
botnets
cybersecurity
exploit
hostdime
hosting
independent
internet
malware
monitoring
phishing
report
security
servers
spam
technology
threats
united states
zeus
Severity Rating: Critical - Revision Note: V1.0 (July 12, 2011): Bulletin published.Summary: This security update resolves a privately reported vulnerability in the Windows Bluetooth Stack. The vulnerability could allow remote code execution if an attacker sent a series of specially crafted...
Resolves vulnerabilities in Microsoft Windows that could allow elevation of privilege if an attacker logged on locally and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit these...
More...
Severity Rating: Critical - Revision Note: V1.0 (June 14, 2011): Bulletin published.Summary: This security update resolves a publicly disclosed vulnerability in Microsoft .NET Framework. The vulnerability could allow remote code execution on a client system if a user views a specially crafted...
.net framework
asp.net
browser
bulletin
client system
code access security
critical
cve
exploit
iis
microsoft
patch
remote code execution
security
server system
update
user rights
vulnerability
web hosting
xaml
Severity Rating: Important - Revision Note: V1.0 (June 14, 2011): Bulletin published.Summary: This security update resolves eight privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An...
administrative rights
cve
cve-2011
excel
exploit
file validation
fix it
important
information
knowledge base
microsoft
office update
patch
protected view
remote code execution
security
update bulletin
user rights
vulnerabilities
Severity Rating: Important - Revision Note: V1.0 (June 14, 2011): Bulletin published.Summary: This security update resolves a privately reported vulnerability in Active Directory Certificate Services Web Enrollment. The vulnerability is a cross-site scripting (XSS) vulnerability that could allow...
Bulletin Severity Rating:Important - This security update resolves eight privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these...