7 months ago

Microsoft fixes multiple bugs in Windows, including three that were being actively exploited

Microsoft issued security fixes for three flaws impacting Windows platform and were being exploited in the wild. The three actively exploited zero-day vulnerabilities in today’s updates are: Windows installer elevation of privilege vulnerability which allowed attackers to gain system privileges on Windows systems. Windows mark of the web security feature bypass vulnerability, which allowed attackers to use specially crafted filed with non-standard target paths or internal structures to open while bypassed the Windows mark of the web security feature. The third critical vulnerability was identified as Microsoft publisher security feature bypass, which could be used by attackers to bypass the security protections against malicious threats in downloaded documents.

Discover Related