Microsoft Addresses RCE and Spoofing Vulnerabilities Under Active Exploitation

Cybersecurity and Infrastructure Security Agency (CISA) - Defend Today, Secure Tomorrow

08/11/2020 02:12 PM EDT

 

Original release date: August 11, 2020
Microsoft has released security updates to address two vulnerabilities—CVE-2020-1380 and CVE-2020-1464—that are being actively exploited.  CVE-2020-1380 is a remote code execution vulnerability affecting Internet Explorer 11, and CVE-2020-1464 is a spoofing vulnerability that affects multiple Windows products. An attacker could exploit these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review Microsoft’s Security Advisories for CVE-2020-1380 and CVE-2020-1464 and apply the necessary updates.

This site uses Akismet to reduce spam. Learn how your comment data is processed.

%d bloggers like this: