Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Adobe Reader / Acrobat Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Reader / Acrobat, which can be exploited by malicious people to conduct cross-site scripting attacks, disclose potentially sensitive information, bypass certain security restrictions, and compromise a user's system. An error in 3difr.x3d...
Last Update Date: 16 Jun 2011 15:42 Release Date: 16 Jun 2011 5485 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Unspecified Memory Corruption Vulnerability

A vulnerability has been identified in Adobe Flash Player, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an unspecified error and can be exploited to corrupt memory. Successful exploitation allows execution of arbitrary code.   ...
Last Update Date: 16 Jun 2011 15:38 Release Date: 16 Jun 2011 5415 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Active Directory Certificate Services Vulnerability

A reflected XSS vulnerability exists in Active Directory Certificate Services Web Enrollment that could allow an attacker to inject a client-side script into the user's instance of Internet Explorer. The script could spoof content, disclose information, or take any action that the user...
Last Update Date: 15 Jun 2011 14:19 Release Date: 15 Jun 2011 5425 Views

RISK: Medium Risk

Medium Risk

Microsoft XML Editor XML External Entities Resolution Vulnerability

An information disclosure vulnerability exists in the way that Microsoft XML Editor handles specially crafted XML files.
Last Update Date: 15 Jun 2011 14:17 Release Date: 15 Jun 2011 5508 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows SMB Request Parsing Vulnerability

A denial of service vulnerability exists in the way that Microsoft Server Message Block (SMB) Protocol software handles specially crafted SMB requests. An attempt to exploit the vulnerability would not require authentication, allowing an attacker to exploit the vulnerability by sending a specially crafted network message...
Last Update Date: 15 Jun 2011 14:14 Release Date: 15 Jun 2011 5348 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Hyper-V VMBus Persistent DoS Vulnerability

A denial of service vulnerability exists in Hyper-V on Windows Server 2008 and Windows Server 2008 R2. The vulnerability is due to Hyper-V servers insufficiently validating specific sequences of machine instructions. An attacker who successfully exploited this vulnerability could cause the affected Hyper-...
Last Update Date: 15 Jun 2011 14:11 Release Date: 15 Jun 2011 5086 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Ancillary Function Driver Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists where the Ancillary Function Driver (afd.sys) improperly validates input passed from user mode to the kernel. The vulnerability could allow an attacker to run code with elevated privileges. A local attacker who successfully exploited this vulnerability could execute...
Last Update Date: 15 Jun 2011 14:08 Release Date: 15 Jun 2011 5163 Views

RISK: Medium Risk

Medium Risk

Microsoft Excel Multiple Vulnerabilities

Excel Insufficient Record Validation Vulnerability A remote code execution vulnerability exists in the way that Microsoft Excel handles specially crafted Excel files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change...
Last Update Date: 15 Jun 2011 14:06 Release Date: 15 Jun 2011 5011 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows MHTML Mime-Formatted Request Vulnerability

An information disclosure vulnerability exists in the way that MHTML interprets MIME-formatted requests for content that are embedded in an HTML document. Similar to server-side cross-site scripting (XSS) vulnerabilities, it is possible under certain conditions for this vulnerability to allow...
Last Update Date: 15 Jun 2011 14:02 Release Date: 15 Jun 2011 5267 Views

RISK: High Risk

High Risk

Microsoft Windows Vector Markup Language Memory Corruption Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses an object that has not been correctly initialized or has been deleted. An attacker could exploit the vulnerability by constructing a specially crafted Web page. When a user views the Web page, the vulnerability...
Last Update Date: 15 Jun 2011 14:00 Release Date: 15 Jun 2011 5148 Views