exploitation

  1. MS10-063 - Critical: Vulnerability in Unicode Scripts Processor Could Allow Remote Code Execution (2

    Severity Rating: Critical - Revision Note: V1.0 (September 14, 2010): Bulletin published.Summary: This security update resolves a privately reported vulnerability in the Unicode Scripts Processor. The vulnerability could allow remote code execution if a user viewed a specially crafted document...
  2. MS10-062 - Critical: Vulnerability in MPEG-4 Codec Could Allow Remote Code Execution (975558)

    Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in MPEG-4 codec. The vulnerability could allow remote code execution if a user opens a specially crafted media file or receives specially crafted streaming content from a Web site or any...
  3. MS10-048 - Important: Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privil

    Severity Rating: Important - Revision Note: V1.0 (August 10, 2010): Bulletin published.Summary: This security update resolves one publicly disclosed and four privately reported vulnerabilities in the Windows kernel-mode drivers. The most severe of these vulnerabilities could allow elevation of...
  4. MS10-055 - Critical: Vulnerability in Cinepak Codec Could Allow Remote Code Execution (982665) - Ver

    Severity Rating: Critical - Revision Note: V1.0 (August 10, 2010): Bulletin published.Summary: This security update resolves a privately reported vulnerability in Cinepak Codec. The vulnerability could allow remote code execution if a user opens a specially crafted media file or receives...
  5. MS10-055 - Critical: Vulnerability in Cinepak Codec Could Allow Remote Code Execution (982665)

    Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Cinepak Codec. The vulnerability could allow remote code execution if a user opens a specially crafted media file or receives specially crafted streaming content from a Web site or any...
  6. MS10-058 - Important: Vulnerabilities in TCP/IP Could Allow Elevation of Privilege (978886)

    Bulletin Severity Rating:Important - This security update resolves two privately reported vulnerabilities in Microsoft Windows. The more severe of these vulnerabilities could allow elevation of privilege due to an error in the processing of a specific input buffer. An attacker who is able to log...
  7. MS10-046 - Critical: Vulnerability in Windows Shell Could Allow Remote Code Execution (2286198) - Ve

    Severity Rating: Critical - Revision Note: V1.0 (August 2, 2010): Bulletin published.Summary: This security update resolves a publicly disclosed vulnerability in Windows Shell. The vulnerability could allow remote code execution if the icon of a specially crafted shortcut is displayed. An...
  8. Microsoft Security Bulletin Advance Notification for August 2010

    Revision Note: Advance Notification published.Summary: This is an advance notification of one out-of-band security bulletin that Microsoft is intending to release on August 2, 2010. The bulletin addresses a security vulnerability in all supported editions of Windows XP, Windows Server 2003...
  9. Microsoft Security Advisory (2286198): Vulnerability in Windows Shell Could Allow Remote Code Execut

    Revision Note: V1.2 (July 20, 2010): Clarified the vulnerability exploit description and updated the workarounds. Advisory Summary:Microsoft is investigating reports of limited, targeted attacks exploiting a vulnerability in Windows Shell, a component of Microsoft Windows. This advisory contains...
  10. Microsoft Security Advisory (981374): Vulnerability in Internet Explorer Could Allow Remote Code Exe

    Revision Note: V2.0 (March 30, 2010): Advisory updated to reflect publication of security bulletin.Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-018 to address this issue. For more information about this issue, including...
  11. Microsoft Security Advisory (2219475): Vulnerability in Windows Help and Support Center Could Allow

    Revision Note: V1.2 (June 15, 2010): Revised Executive Summary to reflect awareness of limited, targeted active attacks that use published proof-of-concept exploit code. Advisory Summary:Microsoft has completed the investigation into a public report of this vulnerability. We have issued M10-042...
  12. Windows 7 Intel Website Compromised through SQL InjectionCredit card data possibly at risk

    Link Removed - Invalid URL A hacker has discovered an SQL injection flaw in a website owned by Intel. According to the attacker, the vulnerability can be exploited to access sensitive information, including credit card details, stored in the underlying database. The proof of concept attack...
  13. Windows 7 default user account control worries experts

    Windows 7 default user account control worries experts. Corporate IT departments should be pleased with new security measures in Windows 7, but consumers are still at risk of getting hit by malware despite changes in the User Account Control (UAC) feature designed to help people be smarter when...
  14. Windows 7 Code-injection Vulnerability

    Windows 7 UAC whitelist: Code-injection Vulnerability (and more)
  15. M

    Windows 7 NProtect Gameguard

    This is an issue that a Lot of people have been running into- well... eveyrone who tries to use it that is. For some reason NProtect Gameguard does not work with windows 7- this means that any games that use it to prevent exploitation also do not work, because they will only run if they detect...