Microsoft Updates
3297Warning Date
Severity Level
Warning Number
Target Sector
9 October, 2019
● High
2019-503
All
Description:
Microsoft has released security updates to address vulnerabilities in the following products:
- Microsoft Windows
- Internet Explorer
- Microsoft Edge (EdgeHTML-based)
- Microsoft Office and Microsoft Office Services and Web Apps
- Windows Update Assistant
- ChakraCore
- Open Source Software
- Microsoft Dynamics 365
- SQL Server Management Studio
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Spoofing attacks.
- Unauthorized disclosure of information.
- Security feature bypass.
- Execute arbitrary code remotely.
Best practice and Recommendations:
The CERT team encourages users to review Microsoft security advisory and apply the necessary updates: https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/28ef0a64-489c-e911-a994-000d3a33c573