Microsoft Windows could allow a local authenticated malicious user to gain elevated privileges on the system, caused by improper symbolic links handling by the MSI packages in the Installer. By executing a specially-crafted program, an authenticated attacker could exploit this vulnerability to add or remove files.
This month the vendor has patched 99 vulnerabilities, 13 of which are rated Critical.
Posted: 12 Feb, 202024 Min ReadThreat Intelligence SubscribeMicrosoft Patch Tuesday – February 2020This month the vendor has patched 99 vulnerabilities, 13 of which are rated Critical.This month the vendor has patched 99 vulnerabilities, 13 of which are rated Critical.
As always, customers are advised to follow these security best practices:
Install vendor patches as soon as they are available.
Run all so...
Meanwhile, we're still squashing bugs in Adobe Flash Player... plus stuff from Intel and SAP
Patch Tuesday It's going to be a busy month for IT administrators as Microsoft, Intel, Adobe, and SAP have teamed up to deliver a bumper crop of security fixes for Patch Tuesday.
Microsoft had one of its largest patch bundles in recent memory, as the Windows giant released fixes for 99 CVE-listed vulnerabilities.
These included CVE-2020-0674, a remote code execution flaw in Internet Explorer's Trident rendering engine that is already being exploited in the wild. This hole would typic...