KLA12432
RCE vulnerability in Microsoft Products (ESU)

Обновлено: 28/09/2023
Дата обнаружения
21/01/2022
Уровень угрозы
High
Описание

Remote code execution vulnerability was found in Microsoft Products (Extended Security Update). Malicious users can exploit this vulnerability to execute arbitrary code.

Эксплуатация

Public exploits exist for this vulnerability.

Пораженные продукты

Windows 7 for 32-bit Systems Service Pack 1
Windows 7 for x64-based Systems Service Pack 1
Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 R2 for x64-based Systems Service Pack 1
Windows Server 2008 for 32-bit Systems Service Pack 2

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2013-3900
Оказываемое влияние
?
ACE 
[?]

PE 
[?]
Связанные продукты
Microsoft Windows
Microsoft Windows 7
Microsoft Windows Server 2008
CVE-IDS
CVE-2013-39007.6Critical