About this tag
MS12-072 is a critical security bulletin from Microsoft, released on November 13, 2012, addressing vulnerabilities in Windows Shell that could allow remote code execution. The update resolves two privately reported flaws exploitable when a user browses to a specially crafted briefcase in Windows Explorer. Successful exploitation could enable an attacker to run arbitrary code as the current user, potentially taking complete control of the system if the user has administrative rights. The bulletin was discussed in the November 2012 Security Bulletin Webcast, where questions focused on detection and deployment for Windows RT, Windows 8, and Windows Server 2012. This tag covers the bulletin details, related webcast Q&A, and the importance of applying the update to mitigate risks.
  1. News

    November 2012 Security Bulletin Webcast, Q&A, and Slide Deck

    Hello, Today we’re publishing the Link Removed - Invalid URL. During the webcast, we fielded ten questions focusing primarily Windows RT, Windows 8, and Windows Server 2012 detection and deployment, MS12-072 (Windows Shell), and MS12-073 (IIS). All questions are included on the Q&A page...
  2. News

    MS12-072 - Critical : Vulnerabilities in Windows Shell Could Allow Remote Code Execution (2727528) -

    Severity Rating: Critical Revision Note: V1.0 (November 13, 2012): Bulletin published. Summary: This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow remote code execution if a user browses to a specially...