Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft Windows Client/Server Runtime Subsystem Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Client/Server Run-time Subsystem (CSRSS), allowing arbitrary code to be executed in the context of another process. If this process runs with administrator privileges, an attacker could then install programs; view, change, ...
Last Update Date: 14 Dec 2011 14:49 Release Date: 14 Dec 2011 8044 Views

RISK: High Risk

High Risk

Microsoft Excel Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Excel handles specially crafted Excel files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or...
Last Update Date: 14 Dec 2011 14:34 Release Date: 14 Dec 2011 7615 Views

RISK: High Risk

High Risk

Microsoft Windows Active Directory Remote Code Execution Vulnerability

A remote code execution vulnerability exists in Active Directory. To exploit this vulnerability, an attacker would first need to acquire credentials to log on to an Active Directory domain. An attacker could then run a specially crafted application that could exploit the vulnerability...
Last Update Date: 14 Dec 2011 12:34 Release Date: 14 Dec 2011 7788 Views

RISK: High Risk

High Risk

Microsoft Publisher Remote Code Execution Vulnerabilities

A remote code execution vulnerability exists in the way that Microsoft Publisher parses Publisher files. An attacker could exploit the vulnerability by creating a specially crafted Publisher file that could be included as an e-mail attachment, or hosted on a specially crafted or compromised Web site...
Last Update Date: 14 Dec 2011 12:33 Release Date: 14 Dec 2011 7929 Views

RISK: High Risk

High Risk

Microsoft PowerPoint Remote Code Execution Vulnerabilities

PowerPoint Insecure Library Loading Vulnerability A remote code execution vulnerability exists in the way that Microsoft PowerPoint handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; ...
Last Update Date: 14 Dec 2011 12:32 Release Date: 14 Dec 2011 8020 Views

RISK: High Risk

High Risk

Microsoft Time Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the Microsoft Time component. An attacker could exploit the vulnerability by constructing a specially crafted Web page. When a user views the Web page, the vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could...
Last Update Date: 14 Dec 2011 12:31 Release Date: 14 Dec 2011 7693 Views

RISK: High Risk

High Risk

Microsoft Office Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Word handles specially crafted Word files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or...
Last Update Date: 14 Dec 2011 12:30 Release Date: 14 Dec 2011 7531 Views

RISK: High Risk

High Risk

Microsoft Windows OLE32 Remote Code Execution Vulnerability

A vulnerability exists in OLE that could lead to remote code execution if a user opens a file that contains a specially crafted OLE object. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on...
Last Update Date: 14 Dec 2011 12:29 Release Date: 14 Dec 2011 7801 Views

RISK: High Risk

High Risk

Microsoft Office IME (Chinese) Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists due to the way that the Microsoft Office IME (Chinese) improperly exposes configuration options not designed to run on the secure desktop. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then...
Last Update Date: 14 Dec 2011 12:27 Release Date: 14 Dec 2011 7908 Views

RISK: High Risk

High Risk

Microsoft Windows Media Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Windows Media Player and Windows Media Center handle .dvr-ms files. This vulnerability could allow an attacker to execute arbitrary code if the attacker convinces a user to open a specially crafted .dvr-ms file...
Last Update Date: 14 Dec 2011 12:27 Release Date: 14 Dec 2011 7739 Views