Skip to main content

CND News and Blog

New Vulnerabilities Tuesday 11 October - Part 2


Monthly Patches are out for Microsoft.

Microsoft Exploit

Monthly Patches have been published, with 96 vulnerabilities. 13 patches are rated as Critical, 71 as Important and 1 as Moderate. There is no patch for the current Exchange vulnerability. One vulnerability, a Windows COM+ Event System Service Elevation of Privilege Vulnerability, is already being exploited. A Microsoft Office Information Disclosure Vulnerability, was made public before the patch was released. Highest CVSSv3 score of 10.
More info. And here. And here.

A vulnerability exists affecting the cluster connect feature of Azure Arc-enabled Kubernetes clusters. This vulnerability could allow an unauthenticated remote attacker to gain administrative control over the Kubernetes cluster. CVSSv3 score of 10.
More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Saturday, 27 April 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/