Microsoft Releases the March 2020 Security Updates for Office
#1
Exclamation 
Quote:Microsoft released the March 2020 Office security updates on March 10, 2020, with a total of 13 security updates and 5 cumulative updates for 6 different products, with 12 of them patching bugs allowing attackers to execute arbitrary code remotely after exploitation.
 
Out of the 13 Office security updates released by Microsoft today, 12 of them patch RCE vulnerabilities (details in CVE-2020-0850, CVE-2020-0852, and CVE-2020-0892,​​​​​​) within Word 2010, SharePoint Server 2010, SharePoint Foundation 2010, SharePoint Server 2010 Office Web Apps, Word 2013, SharePoint Enterprise Server 2013, SharePoint Foundation 2013, Word 2016, SharePoint Enterprise Server 2016, SharePoint Server 2019 Language Pack, and Office Online Server.
 
The RCE bugs are rated by Microsoft with a severity rating of 'Important' seeing that they could enable potential attackers to execute arbitrary code and/or commands after successfully exploiting Windows devices running unpatched Office products, as well as take control of devices where the currently logged on user has administrative user rights.
 
Attackers could then install programs, view, change, and delete data, as well as create new accounts with full user rights on the compromised computers.
 
Two cross-site-scripting (XSS) vulnerabilities were also patched in SharePoint Enterprise Server 2013 and SharePoint Server 2019 (details in CVE-2020-0795CVE-2020-0891CVE-2020-0893, and CVE-2020-0894) that would allow attackers to run scripts in the security context of the current user and impersonate the user, steal sensitive data, or read content without authorization.

This month's Microsoft Office security updates are delivered through the Microsoft Update platform and via the Download Center.

Read more: https://www.bleepingcomputer.com/news/se...or-office/
[-] The following 2 users say Thank You to silversurfer for this post:
  • dinosaur07, harlan4096
Reply
#2
Additional Info: https://www.ghacks.net/2020/03/10/micros...-overview/
[-] The following 1 user says Thank You to harlan4096 for this post:
  • silversurfer
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Adobe Acrobat Reader DC 2025.001.20577
Adobe Acrobat Read...harlan4096 — 08:46
AdGuard for iOS v4.5.11
AdGuard for iOS v4...harlan4096 — 08:46
Microsoft Edge 138.0.3351.95
Fixed various bugs...harlan4096 — 08:45
LibreOffice 25.2.5
Berlin, 17 July 20...harlan4096 — 08:41
Opera 120.0.5543.93
Hello! We’ve ju...harlan4096 — 08:40

[-]
Birthdays
Today's Birthdays
avatar (35)pa.OpenTran
Upcoming Birthdays
avatar (42)lapedDow
avatar (48)rituabew
avatar (36)omyjul
avatar (40)papedDow
avatar (49)ArnoldFum
avatar (37)yfaza
avatar (48)Kevensi
avatar (38)boineDon
avatar (39)Grompelbawn
avatar (40)vkseogaF
avatar (36)usogy
avatar (39)ywixazok

[-]
Online Staff
harlan4096's profile harlan4096
Administrator
dhruv2193's profile dhruv2193

>