exploitation

  1. MS12-003 - Important : Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevati

    Severity Rating: Important Revision Note: V1.0 (January 10, 2012): Bulletin published. Summary: This security update resolves one privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker successfully...
  2. MS11-089 - Important : Vulnerability in Microsoft Office Could Allow Remote Code Execution (2590602)

    Severity Rating: Important Revision Note: V1.0 (December 13, 2011): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted...
  3. MS11-091 - Important : Vulnerabilities in Microsoft Publisher Could Allow Remote Code Execution (260

    Severity Rating: Important Revision Note: V1.0 (December 13, 2011): Bulletin published. Summary: This security update resolves four privately reported vulnerabilities in Microsoft Office. The most severe vulnerabilities could allow remote code execution if a user opens a...
  4. Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow Elevation

    Revision Note: V1.3 (November 8, 2011): Added link to MAPP Partners with Updated Protections in the Executive Summary. Revised impact statement for the workaround, Deny access to T2EMBED.DLL, to address a reoffer issue on Windows XP and Windows Server 2003. Also, revised the mitigating factors...
  5. Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow Elevation

    Revision Note: V1.0 (November 3, 2011): Advisory published. Summary: Microsoft is investigating a vulnerability in a Microsoft Windows component, the Win32k TrueType font parsing engine. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode...
  6. Microsoft releases Security Advisory 2588513

    Hello. Today we released Security Advisory 2588513, addressing an information-disclosure issue in SSL (Secure Sockets Layer) 3.0 and TLS (Transport Layer Security) 1.0 to provide guidance for customers. This is an industry-wide issue with limited impact that affects the Internet ecosystem as a...
  7. MS11-072 - Important : Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2587505

    Severity Rating: Important Revision Note: V1.0 (September 13, 2011): Bulletin published. Summary: This security update resolves five privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially...
  8. MS10-07B - Important : Vulnerability in ASP.NET Could Allow Information Disclosure (2418042) - Versi

    Severity Rating: Important Revision Note: V4.1 (April 20, 2011): Corrected registry key verification for Microsoft .NET Framework 3.5 Service Pack 1 when installed on Windows XP and Windows Server 2003. Summary: This security update resolves a publicly disclosed...
  9. MS11-018 - Critical : Cumulative Security Update for Internet Explorer (2497640) - Version: 2.0

    Severity Rating: Critical Revision Note: V2.0 (May 16, 2011): Bulletin rereleased to reoffer the update for Internet Explorer 7 on supported editions of Windows XP and Windows Server 2003. This is a detection change only. There were no changes to the binaries. Only affected customers...
  10. MS11-036 - Important : Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (25

    Severity Rating: Important Revision Note: V1.2 (June 14, 2011): Announced that the updates for Microsoft Office for Mac, which were not available when the bulletin was originally published, are now available in bulletin MS11-045. Also, for both vulnerabilities addressed by this...
  11. MS11-055 - Important : Vulnerability in Microsoft Visio Could Allow Remote Code Execution (2560847)

    Severity Rating: Important Revision Note: V1.0 (July 12, 2011): Bulletin published. Summary: This security update resolves a publicly disclosed vulnerability in Microsoft Visio. The vulnerability could allow remote code execution if a user opens a legitimate Visio file that...
  12. MS11-057 - Critical: Cumulative Security Update for Internet Explorer (2559049)

    Bulletin Severity Rating:Critical - This security update resolves five privately reported vulnerabilities and two publicly disclosed vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet...
  13. Windows 7 Trend Micro Control Manager file disclosure vulnerability

    Link Removed - Invalid URL
  14. Windows 7 Highly Critical Vulnerabilities Identified in VLC Media Player

    Link Removed - Invalid URL
  15. Windows 7 Cookiejacking - The bane of IE Existence.

    Cookiejacking - The bane of IE Existence | WindowsTalk.org
  16. MS11-054 - Important: Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privil

    Severity Rating: Important - Revision Note: V1.0 (July 12, 2011): Bulletin published.Summary: This security update resolves 15 privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow elevation of privilege if an attacker logged on locally and...
  17. MS11-053: Vulnerability in Bluetooth Stack could allow remote code execution: July 12, 2011

    Resolves a vulnerability in the Windows Bluetooth Stack that could allow remote code execution if an attacker sent a series of specially crafted Bluetooth packets to an affected system. More...
  18. Windows 7 Attackers exploit latest Flash bug on large

    Hackers are aggressively exploiting a just-patched Flash vulnerability, serving attack code "on a fairly large scale" from compromised sites as well as from their own malicious domains, a security researcher said June 17. Attacks show up in Korea, Taiwan, and India. They're also attacking...
  19. MS11-039 - Critical: Vulnerability in .NET Framework and Microsoft Silverlight Could Allow Remote Co

    Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft .NET Framework and Microsoft Silverlight. The vulnerability could allow remote code execution on a client system if a user views a specially crafted Web page using a Web browser that...
  20. MS11-036 - Important: Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (254

    Bulletin Severity Rating:Important - This security update resolves two privately reported vulnerabilities in Microsoft PowerPoint. The vulnerabilities could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited either of these...