ADVISORY!

TLP : CLEAR

Date : 16/05/2024

REF NO : CERT / 2024/05/44

Multiple Vulnerabilities in Microsoft Products

Severity Level: High

Components Affected

  • Microsoft Windows
  • Microsoft Office
  • Microsoft Dynamics
  • Microsoft SQL Server
  • Browser
  • Developer Tools
  • ESU
  • Azure
  • Apps

Overview

Multiple vulnerabilities have been reported in Microsoft Products, which could allow an attacker to gain elevated privileges, obtain sensitive information, conduct remote code execution attacks, bypass security restrictions, conduct spoofing attacks, conduct tampering attacks, or cause denial of service conditions.

Description

Multiple vulnerabilities have been reported in various Microsoft Products:

Impact

  • Remote Code Execution
  • Spoofing
  • Security Feature Bypass
  • Denial of service
  • Information Disclosure
  • Elevation of Privilege
  • Cross-Site Scripting
  • Tampering

Solution/ Workarounds

Apply appropriate security updates as mentioned in  

https://msrc.microsoft.com/update-guide/releaseNote/2024-May

Reference

Disclaimer : The information provided herein is on an “as is” basis, without warranty of any kind.

Sri Lanka Computer Emergency Readiness Team | Coordination Centre

Copyright © 2023 SRI LANKA CERT | CC