Microsoft Updates
3066Warning Date
Severity Level
Warning Number
Target Sector
11 March, 2020
● High
2020-1009
All
Description:
Microsoft has released a security update to address several vulnerabilities in the following products:
- Microsoft Windows
- Microsoft Edge (EdgeHTML-based)
- Microsoft Edge (Chromium-based)
- ChakraCore
- Internet Explorer
- Microsoft Exchange Server
- Microsoft Office and Microsoft Office Services and Web Apps
- Azure DevOps
- Windows Defender
- Visual Studio
- Open Source Software
- Azure
- Microsoft Dynamics
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Elevation of Privilege.
- Cross-site scripting (XSS).
- Execute arbitrary code - remotely.
- Unauthorized disclosure of information.
- Memory Corruption.
- Denial of Service (DoS).
Best practice and Recommendations:
The CERT team encourages users to review Microsoft security advisory and apply the necessary updates:
Update instructions: