-
MS12-028 - Important : Vulnerability in Microsoft Office Could Allow Remote Code Execution (2639185)
Severity Rating: Important Revision Note: V1.0 (April 10, 2012): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Office and Microsoft Works. The vulnerability could allow remote code execution if a user opens a...- News
- Thread
- bulletin exploitation extended security updates important microsoft microsoft office microsoft works patch remote code execution update user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS12-027 - Critical : Vulnerability in Windows Common Controls Could Allow Remote Code Execution (26
Severity Rating: Critical Revision Note: V1.0 (April 10, 2012): Bulletin published. Summary: This security update resolves a privately disclosed vulnerability in Windows common controls. The vulnerability could allow remote code execution if a user visits a website...- News
- Thread
- common controls critical cybersecurity exploitation extended security updates ms12-027 remote code execution vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS11-100 - Critical : Vulnerabilities in .NET Framework Could Allow Elevation of Privilege (2638420)
Severity Rating: Critical Revision Note: V1.3 (February 1, 2012): Corrected registry keys and installation switches in the deployment tables for Windows Server 2003 and Windows Server 2008, and installation switches in the deployment table for Windows Vista. This is an informational...- News
- Thread
- access denied asp.net attack command execution critical deployment elevation of privilege exploitation extended security updates information disclosure informational change microsoft net framework privately reported registry server 2003 server 2008 user account vulnerabilities windows vista
- Replies: 0
- Forum: Security Alerts
-
MS12-018 - Important : Vulnerability in Windows Kernel-Mode Drivers Could Allow Elevation of Privile
Severity Rating: Important Revision Note: V1.0 (March 13, 2012): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to a system and...- News
- Thread
- drivers exploitation kernel march 2012 microsoft privilege security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS12-022 - Important : Vulnerability in Expression Design Could Allow Remote Code Execution (2651018
Severity Rating: Important Revision Note: V1.0 (March 13, 2012): Bulletin published. Summary: This security update resolves one privately reported vulnerability in Microsoft Expression Design. The vulnerability could allow remote code execution if a user opens a legitimate...- News
- Thread
- cybersecurity dll exploitation expression design file management malware microsoft ms12-022 patch remote code execution risk assessment security threats update vulnerability webdav
- Replies: 0
- Forum: Security Alerts
-
MS11-093 - Important : Vulnerability in OLE Could Allow Remote Code Execution (2624667) - Version: 1
Severity Rating: Important Revision Note: V1.0 (December 13, 2011): Bulletin published. Summary: This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all...- News
- Thread
- attack bulletin exploitation extended security updates important microsoft ole patch remote code execution security server 2008 software technical note threats user rights vulnerability windows 7 windows server windows vista windows xp
- Replies: 0
- Forum: Security Alerts
-
MS12-013 - Critical : Vulnerability in C Run-Time Library Could Allow Remote Code Execution (2654428
Severity Rating: Critical Revision Note: V1.0 (February 14, 2012): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted...- News
- Thread
- critical exploitation media files ms12-013 remote code execution security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS12-004: Vulnerabilities in Windows Media could allow remote code execution: January 10, 2012
Resolves vulnerabilities in Microsoft Windows that could allow remote code execution if a user opens a specially crafted media file. An attacker who successfully exploited the vulnerabilities could gain the same user rights as the local user. More...- News
- Thread
- exploitation media files microsoft ms12-004 remote code execution security update user rights vulnerabilities windows
- Replies: 0
- Forum: Knowledge Base (KB)
-
MS12-001: Vulnerability in Windows Kernel could allow security Feature bypass: January 10, 2012
Resolves a vulnerability in Microsoft Windows that could allow security feature bypass if an attacker exploited it to circumvent the SafeSEH security feature. More...- News
- Thread
- exploitation feature bypass january 2012 kernel microsoft patch resolve safeseh security update vulnerability windows
- Replies: 0
- Forum: Knowledge Base (KB)
-
MS12-003 - Important : Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevati
Severity Rating: Important Revision Note: V1.0 (January 10, 2012): Bulletin published. Summary: This security update resolves one privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker successfully...- News
- Thread
- attack bulletin exploitation january locale privilege security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS11-089 - Important : Vulnerability in Microsoft Office Could Allow Remote Code Execution (2590602)
Severity Rating: Important Revision Note: V1.0 (December 13, 2011): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted...- News
- Thread
- admin rights bulletin exploitation microsoft ms11-089 office patch remote code execution revision note security technet update user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS11-091 - Important : Vulnerabilities in Microsoft Publisher Could Allow Remote Code Execution (260
Severity Rating: Important Revision Note: V1.0 (December 13, 2011): Bulletin published. Summary: This security update resolves four privately reported vulnerabilities in Microsoft Office. The most severe vulnerabilities could allow remote code execution if a user opens a...- News
- Thread
- exploitation microsoft microsoft office publisher remote code execution security threats update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow Elevation
Revision Note: V1.3 (November 8, 2011): Added link to MAPP Partners with Updated Protections in the Executive Summary. Revised impact statement for the workaround, Deny access to T2EMBED.DLL, to address a reoffer issue on Windows XP and Windows Server 2003. Also, revised the mitigating factors...- News
- Thread
- access advisory attack elevation exploitation fonts impact kernel malware mapp microsoft parsing programs protection security truetype vulnerability windows server windows xp workaround
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow Elevation
Revision Note: V1.0 (November 3, 2011): Advisory published. Summary: Microsoft is investigating a vulnerability in a Microsoft Windows component, the Win32k TrueType font parsing engine. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode...- News
- Thread
- advisory arbitrary attack code customer service data elevation exploitation fonts impact kernel malware microsoft revision security target truetype vulnerability win32k windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft releases Security Advisory 2588513
Hello. Today we released Security Advisory 2588513, addressing an information-disclosure issue in SSL (Secure Sockets Layer) 3.0 and TLS (Transport Layer Security) 1.0 to provide guidance for customers. This is an industry-wide issue with limited impact that affects the Internet ecosystem as a...- News
- Thread
- advisory attack bandwidth browser communication computing exploitation guidance https information internet mitigation protocol risk security ssl threats tls update vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS11-072 - Important : Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2587505
Severity Rating: Important Revision Note: V1.0 (September 13, 2011): Bulletin published. Summary: This security update resolves five privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially...- News
- Thread
- cve excel exploitation microsoft office patch remote code execution security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS10-07B - Important : Vulnerability in ASP.NET Could Allow Information Disclosure (2418042) - Versi
Severity Rating: Important Revision Note: V4.1 (April 20, 2011): Corrected registry key verification for Microsoft .NET Framework 3.5 Service Pack 1 when installed on Windows XP and Windows Server 2003. Summary: This security update resolves a publicly disclosed...- News
- Thread
- asp.net encryption exploitation framework information disclosure microsoft patch registry security service pack tampering update vulnerability windows server windows xp
- Replies: 0
- Forum: Security Alerts
-
MS11-018 - Critical : Cumulative Security Update for Internet Explorer (2497640) - Version: 2.0
Severity Rating: Critical Revision Note: V2.0 (May 16, 2011): Bulletin rereleased to reoffer the update for Internet Explorer 7 on supported editions of Windows XP and Windows Server 2003. This is a detection change only. There were no changes to the binaries. Only affected customers...- News
- Thread
- binaries critical cumulative customer action detection change exploitation ie7 ie8 internet explorer moderate remote code execution revision security technical note update user rights vulnerabilities webpage windows server windows xp
- Replies: 0
- Forum: Security Alerts
-
MS11-036 - Important : Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (25
Severity Rating: Important Revision Note: V1.2 (June 14, 2011): Announced that the updates for Microsoft Office for Mac, which were not available when the bulletin was originally published, are now available in bulletin MS11-045. Also, for both vulnerabilities addressed by this...- News
- Thread
- attack vector bulletin cve-2011-1269 cve-2011-1270 exploitation file validation important malware microsoft microsoft office patch powerpoint registry remote code execution security update user rights vulnerabilities workaround
- Replies: 0
- Forum: Security Alerts
-
MS11-055 - Important : Vulnerability in Microsoft Visio Could Allow Remote Code Execution (2560847)
Severity Rating: Important Revision Note: V1.0 (July 12, 2011): Bulletin published. Summary: This security update resolves a publicly disclosed vulnerability in Microsoft Visio. The vulnerability could allow remote code execution if a user opens a legitimate Visio file that...- News
- Thread
- bulletin exploitation microsoft network remote code execution security update user rights visio vulnerability
- Replies: 0
- Forum: Security Alerts