[CIAD-2025-0028] Multiple Vulnerabilities in Microsoft Products
—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA256
Multiple Vulnerabilities in Microsoft Products
Indian – Computer Emergency Response Team (https://www.cert-in.org.in)
Severity Rating: High
Software Affected
Microsoft Windows
Microsoft Office
Microsoft Dynamics
Browser
Device
Developer Tools
SQL Server
System Center
Open Source Software
Server Software
Extended Security Updates (ESU) for legacy Microsoft products
Azure
Apps
Overview
Multiple vulnerabilities have been reported in Microsoft Products, which could allow an attacker to gain elevated privileges, obtain sensitive information, conduct remote code execution attacks, bypass security restrictions, conduct spoofing attacks, cause denial of service conditions or tamper with system settings.
Target Audience:
Individuals and IT administrators, security teams responsible for maintaining and updating Microsoft products
Risk Assessment:
Risk of remote code execution, system instability or sensitive information disclosure
Impact Assessment:
Potential compromise of system, exfiltration of data, ransomware attacks or system crashes.
Description
Multiple vulnerabilities have been reported in Microsoft Products, which could allow an attacker to gain elevated privileges, obtain sensitive information, conduct remote code execution attacks, bypass security restrictions, conduct spoofing attacks, cause denial of service conditions or tamper with system settings.
For complete list of affected products, CVEs, workarounds and solutions, refer to the Microsoft security updates.
https://msrc.microsoft.com/update-guide/releaseNote/2025-Aug
Solution
Apply appropriate security updates as mentioned in
https://msrc.microsoft.com/update-guide/releaseNote/2025-Aug
Vendor Information
Microsoft
https://msrc.microsoft.com/update-guide/
References
https://msrc.microsoft.com/update-guide/releaseNote/2025-Aug
– —
Thanks and Regards,
CERT-In
Incident Response Help Desk
e-mail: incident@cert-in.org.in
Phone: +91-11-22902657
Toll Free Number: 1800-11-4949
Toll Free Fax : 1800-11-6969
Web: http://www.cert-in.org.in
PGP Fingerprint: A768 083E 4475 5725 B81A A379 2156 C0C0 B620 D0B4
PGP Key information:
https://www.cert-in.org.in/s2cMainServlet?pageid=CONTACTUS
Postal address:
Indian Computer Emergency Response Team (CERT-In)
Ministry of Electronics and Information Technology
Government of India
Electronics Niketan
6, C.G.O. Complex
New Delhi-110 003
—–BEGIN PGP SIGNATURE—–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=wYrY
—–END PGP SIGNATURE—–