-
MS16-107 - Critical: Security Update for Microsoft Office (3185852) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (September 13, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file...- News
- Thread
- arbitrary code critical cybersecurity exploitation extended security updates malware microsoft office ms16-107 office files patch remote code execution revision note security september software security update user account control user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS16-100 - Important: Security Update for Secure Boot (3179577) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (August 9, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass if an attacker installs an affected boot manager and bypasses Windows security...- News
- Thread
- 2016 attacker boot manager bypass microsoft ms16-100 revision note secure boot security security features update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-091 - Important: Security Update for .NET Framework (3170048) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (July 12, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft .NET Framework. The vulnerability could cause information disclosure if an attacker uploads a specially crafted XML file to web-based...- News
- Thread
- 2016 backend security bug fixes cybersecurity information disclosure microsoft ms16-091 net framework patch revision note risk management security software update tech news technical bulletin update vulnerability web apps xml
- Replies: 0
- Forum: Security Alerts
-
MS16-090 - Important: Security Update for Windows Kernel-Mode Drivers (3171481) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (July 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The more severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...- News
- Thread
- attacker bulletin control drivers elevation of privilege july kernel-mode ms16-090 revision note security system update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
MS16-092 - Important: Security Update for Windows Kernel (3171910) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (July 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow security feature bypass if the Windows kernel fails to properly validate...- News
- Thread
- 3171910 bulletin bypass critical extended security updates features important july kernel microsoft ms16-092 patch performance revision note security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-088 - Critical: Security Update for Microsoft Office (3170008) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (July 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An...- News
- Thread
- arbitrary code context critical exploit july microsoft office ms16-088 office files patch remote code execution revision note security software security update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS16-083 - Critical: Security Update for Adobe Flash Player (3167685) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (June 16, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...- News
- Thread
- adobe flash bug fixes critical cve extended security updates flash player june ms16-083 patch performance revision note security bulletin software update support update vulnerabilities windows 10 windows 8.1 windows rt windows server
- Replies: 0
- Forum: Security Alerts
-
MS16-083 - Critical: Security Update for Adobe Flash Player (3167685) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (June 16, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...- News
- Thread
- adobe flash critical ms16-083 revision note security support update vulnerabilities windows 10 windows 8.1 windows rt windows server
- Replies: 0
- Forum: Security Alerts
-
MS16-077 - Important: Security Update for WPAD (3165191) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (June 14, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if the Web Proxy Auto Discovery (WPAD) protocol falls back to a vulnerable proxy...- News
- Thread
- bulletin elevation of privilege extended security updates important june ms16-077 revision note vulnerability windows wpad
- Replies: 0
- Forum: Security Alerts
-
MS16-061 - Important: Security Update for Microsoft RPC (3155520) - Version: 1.1
Severity Rating: Important Revision Note: V1.1 (May 11, 2016): Bulletin revised to change the vulnerability impact from elevation of privilege to remote code execution, and the title of CVE 2016-0178 to RPC Network Data Representation Engine Remote Code Execution Vulnerability. This is an...- News
- Thread
- 2016 cve 2016-0178 extended security updates informational change ms16-061 remote code execution revision note rpc update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-065 - Important: Security Update for .NET Framework (3156757) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (May 10, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft .NET Framework. The vulnerability could cause information disclosure if an attacker injects unencrypted data into the target secure channel and...- News
- Thread
- attack important information disclosure microsoft mitm ms16-065 net framework revision note security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS16-055 - Critical: Security Update for Microsoft Graphics Component (3156754) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (May 10, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted document or visits a...- News
- Thread
- 2016 bulletin critical cybersecurity documents extended security updates graphics component microsoft ms16-055 patch remote code execution revision note software threats update user rights vulnerability website windows
- Replies: 0
- Forum: Security Alerts
-
MS16-051 - Critical: Cumulative Security Update for Internet Explorer (3155533) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (May 10, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2016 admin rights bulletin critical cumulative update data security exploit extended security updates internet explorer malware microsoft ms16-051 patch remote code execution revision note system control user rights vulnerabilities web security
- Replies: 0
- Forum: Security Alerts
-
3155527 - Update to Cipher Suites for FalseStart - Version: 1.0
Revision Note: V1.0 (May 10, 2016): Advisory published. Summary: FalseStart allows the TLS client to send application data before receiving and verifying the server Finished message. This allows an attacker to launch a man-in-the-middle (MiTM) attack to force the TLS client to encrypt the first...- News
- Thread
- advisory application data attacker cipher cipher suites client downgrade attack encryption falsestart man-in-the-middle microsoft mitm network security revision note security tls transport layer security update version 1.0
- Replies: 0
- Forum: Security Alerts
-
MS16-058 - Important: Security Update for Windows IIS (3141083) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (May 10, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker with access to the local system executes a malicious application. An...- News
- Thread
- 2016 admin rights bulletin exploitation iis malicious software microsoft ms16-058 patch remote code execution revision note security security bulletin update user account user rights vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
3155527 - Update to Cipher Suites for FalseStart - Version: 1.0
Revision Note: V1.0 (May 10, 2016): Advisory published. Summary: FalseStart allows the TLS client to send application data before receiving and verifying the server Finished message. This allows an attacker to launch a man-in-the-middle (MiTM) attack to force the TLS client to encrypt the first...- News
- Thread
- advisory application data cipher suites client downgrade attack encryption falsestart microsoft mitm network security protocol record revision note security server technet tls update version 1.0
- Replies: 0
- Forum: Security Alerts
-
MS16-036 - Critical: Security Update for Adobe Flash Player (3144756) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (March 10, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...- News
- Thread
- bulletin critical extended security updates flash player march 2016 ms16-036 patch revision note security server 2012 software update support update history version 1.0 vulnerabilities windows 10 windows 8.1 windows editions windows rt 8.1 windows server 2012 r2
- Replies: 0
- Forum: Security Alerts
-
MS16-FEB - Microsoft Security Bulletin Summary for February 2016 - Version: 2.0
Revision Note: V2.0 (February 10, 2016): For MS16-014, Bulletin Summary revised to announce the availability of update 3126041 for Microsoft Windows Vista, Windows Server 2008, Windows Server 2008 for Itanium-based Systems, Windows 8.1, and Windows Server 2012 R2. Customers should apply the...- News
- Thread
- automatic updates bulletin cve-2016-0050 documentation exploitability february 2016 microsoft ms16-014 ms16-021 patch patch management revision note security server 2008 server 2012 update vulnerabilities windows 8.1 windows security windows vista
- Replies: 0
- Forum: Security Alerts
-
MS16-003 - Critical: Cumulative Security Update for JScript and VBScript to Address Remote...
Severity Rating: Critical Revision Note: V1.0 (January 12, 2016): Bulletin published. Summary: This security update resolves a vulnerability in the VBScript scripting engine in Microsoft Windows. The vulnerability could allow remote code execution if a user visits a specially crafted website. An...- News
- Thread
- admin rights attack prevention critical cumulative update data security extended security updates internet safety malware microsoft ms16-003 patch management remote code execution revision note software security system control user rights vbscript vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-001 - Critical: Cumulative Security Update for Internet Explorer (3124903) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (January 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The more severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2016 admin rights critical cumulative update data security exploitation extended security updates internet explorer malware ms16-001 patch remote code execution revision note security bulletin system control technet user account user rights vulnerability web security
- Replies: 0
- Forum: Security Alerts