Severity Rating: Critical
Revision Note: V1.0 (September 13, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file...
arbitrary code
critical
cybersecurity
exploitation
extended security updates
malware
microsoft office
ms16-107
office files
patch
remote code execution
revisionnote
security
september
software security
update
user account control
user rights
vulnerabilities
Severity Rating: Important
Revision Note: V1.0 (August 9, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass if an attacker installs an affected boot manager and bypasses Windows security...
Severity Rating: Important
Revision Note: V1.0 (July 12, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft .NET Framework. The vulnerability could cause information disclosure if an attacker uploads a specially crafted XML file to web-based...
Severity Rating: Important
Revision Note: V1.0 (July 12, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The more severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...
Severity Rating: Important
Revision Note: V1.0 (July 12, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow security feature bypass if the Windows kernel fails to properly validate...
3171910
bulletin
bypass
critical
extended security updates
features
important
july
kernel
microsoft
ms16-092
patch
performance
permissions
revisionnote
security
update
vulnerability
windows
Severity Rating: Critical
Revision Note: V1.0 (July 12, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An...
Severity Rating: Critical
Revision Note: V1.0 (June 16, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...
adobe flash
bug fixes
critical
cve
extended security updates
flash player
june
ms16-083
patch
performance
revisionnote
security bulletin
software update
support
update
vulnerabilities
windows 10
windows 8.1
windows rt
windows server
Severity Rating: Critical
Revision Note: V1.0 (June 16, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...
Severity Rating: Important
Revision Note: V1.0 (June 14, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if the Web Proxy Auto Discovery (WPAD) protocol falls back to a vulnerable proxy...
Severity Rating: Important
Revision Note: V1.1 (May 11, 2016): Bulletin revised to change the vulnerability impact from elevation of privilege to remote code execution, and the title of CVE 2016-0178 to RPC Network Data Representation Engine Remote Code Execution Vulnerability. This is an...
Severity Rating: Important
Revision Note: V1.0 (May 10, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft .NET Framework. The vulnerability could cause information disclosure if an attacker injects unencrypted data into the target secure channel and...
Severity Rating: Critical
Revision Note: V1.0 (May 10, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted document or visits a...
Severity Rating: Critical
Revision Note: V1.0 (May 10, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...
2016
admin rights
bulletin
critical
cumulative update
data security
exploit
extended security updates
internet explorer
malware
microsoft
ms16-051
patch
remote code execution
revisionnote
system control
user rights
vulnerabilities
web security
Revision Note: V1.0 (May 10, 2016): Advisory published.
Summary: FalseStart allows the TLS client to send application data before receiving and verifying the server Finished message. This allows an attacker to launch a man-in-the-middle (MiTM) attack to force the TLS client to encrypt the first...
Severity Rating: Important
Revision Note: V1.0 (May 10, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker with access to the local system executes a malicious application. An...
2016
admin rights
bulletin
exploitation
iis
malicious software
microsoft
ms16-058
patch
remote code execution
revisionnote
security
security bulletin
severity rating
update
user account
user rights
vulnerability
windows
Revision Note: V1.0 (May 10, 2016): Advisory published.
Summary: FalseStart allows the TLS client to send application data before receiving and verifying the server Finished message. This allows an attacker to launch a man-in-the-middle (MiTM) attack to force the TLS client to encrypt the first...
advisory
application data
cipher suites
client
downgrade attack
encryption
falsestart
microsoft
mitm
network security
protocol
record
revisionnote
security
server
technet
tls
update
version 1.0
Severity Rating: Critical
Revision Note: V1.0 (March 10, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...
bulletin
critical
extended security updates
flash player
march 2016
ms16-036
patch
revisionnote
security
server 2012
software update
support
update history
version 1.0
vulnerabilities
windows 10
windows 8.1
windows editions
windows rt 8.1
windows server 2012 r2
Revision Note: V2.0 (February 10, 2016): For MS16-014, Bulletin Summary revised to announce the availability of update 3126041 for Microsoft Windows Vista, Windows Server 2008, Windows Server 2008 for Itanium-based Systems, Windows 8.1, and Windows Server 2012 R2. Customers should apply the...
automatic updates
bulletin
cve-2016-0050
documentation
exploitability
february 2016
microsoft
ms16-014
ms16-021
patch
patch management
revisionnote
security
server 2008
server 2012
update
vulnerabilities
windows 8.1
windows security
windows vista
Severity Rating: Critical
Revision Note: V1.0 (January 12, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in the VBScript scripting engine in Microsoft Windows. The vulnerability could allow remote code execution if a user visits a specially crafted website. An...
admin rights
attack prevention
critical
cumulative update
data security
extended security updates
internet safety
malware
microsoft
ms16-003
patch management
remote code execution
revisionnote
software security
system control
user rights
vbscript
vulnerability
windows
Severity Rating: Critical
Revision Note: V1.0 (January 12, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Internet Explorer. The more severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...
2016
admin rights
critical
cumulative update
data security
exploitation
extended security updates
internet explorer
malware
ms16-001
patch
remote code execution
revisionnote
security bulletin
system control
technet
user account
user rights
vulnerability
web security