Microsoft Releases the March 2020 Security Updates for Office
#1
Exclamation 
Quote:Microsoft released the March 2020 Office security updates on March 10, 2020, with a total of 13 security updates and 5 cumulative updates for 6 different products, with 12 of them patching bugs allowing attackers to execute arbitrary code remotely after exploitation.
 
Out of the 13 Office security updates released by Microsoft today, 12 of them patch RCE vulnerabilities (details in CVE-2020-0850, CVE-2020-0852, and CVE-2020-0892,​​​​​​) within Word 2010, SharePoint Server 2010, SharePoint Foundation 2010, SharePoint Server 2010 Office Web Apps, Word 2013, SharePoint Enterprise Server 2013, SharePoint Foundation 2013, Word 2016, SharePoint Enterprise Server 2016, SharePoint Server 2019 Language Pack, and Office Online Server.
 
The RCE bugs are rated by Microsoft with a severity rating of 'Important' seeing that they could enable potential attackers to execute arbitrary code and/or commands after successfully exploiting Windows devices running unpatched Office products, as well as take control of devices where the currently logged on user has administrative user rights.
 
Attackers could then install programs, view, change, and delete data, as well as create new accounts with full user rights on the compromised computers.
 
Two cross-site-scripting (XSS) vulnerabilities were also patched in SharePoint Enterprise Server 2013 and SharePoint Server 2019 (details in CVE-2020-0795CVE-2020-0891CVE-2020-0893, and CVE-2020-0894) that would allow attackers to run scripts in the security context of the current user and impersonate the user, steal sensitive data, or read content without authorization.

This month's Microsoft Office security updates are delivered through the Microsoft Update platform and via the Download Center.

Read more: https://www.bleepingcomputer.com/news/se...or-office/
[-] The following 2 users say Thank You to silversurfer for this post:
  • dinosaur07, harlan4096
Reply


Messages In This Thread
Microsoft Releases the March 2020 Security Updates for Office - by silversurfer - 11 March 20, 15:35

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Intel shares Granite Rapids-WS Xeon 600 ...
Intel posts Xeon 6...harlan4096 — 09:49
Manjaro Linux 26.0.3 Build 260228
Manjaro Linux 26.0...harlan4096 — 08:20
K-Lite Codec Pack 19.5.0 / 19.5.4 Update
Changes in 19.5.4 ...harlan4096 — 08:19
JEDEC publishes UFS 5.0 spec with up to ...
KIOXIA starts samp...harlan4096 — 08:17
QOwnNotes
26.2.15  Fix Qt5 ...Kool — 07:30

[-]
Birthdays
Today's Birthdays
avatar (50)daadAmomo
Upcoming Birthdays
avatar (44)gapedDow
avatar (38)snorydar
avatar (43)Hectorvot
avatar (51)knowhanPluts
avatar (39)Williamengiz
avatar (46)qaqapeti
avatar (44)battsourIonix
avatar (43)CedricSek
avatar (39)chasRex
avatar (43)slavrProck
avatar (45)Tyesharaike
avatar (49)TomeRerla
avatar (45)walllMIZ
avatar (41)oconyho
avatar (33)uteluxix
avatar (47)piafcflene
avatar (39)Matthewkah
avatar (51)tersfargum
avatar (50)alfreExept
avatar (38)Charlesfibre
avatar (42)napasvem
avatar (44)diploJeoca
avatar (38)francisnj3
avatar (43)artmaGoork
avatar (45)tukraNax
avatar (51)Claudestync
avatar (41)RichardCisee
avatar (40)ebenofit
avatar (38)ykazawu
avatar (41)ARYsahulatbazar

[-]
Online Staff
There are no staff members currently online.

>