KLA60570
Multiple vulnerabilities in Microsoft Apps

Обновлено: 29/09/2023
Дата обнаружения
12/09/2023
Уровень угрозы
High
Описание

Multiple vulnerabilities were found in Microsoft Apps. Malicious users can exploit these vulnerabilities to execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. A remote code execution vulnerability in 3D Builder can be exploited remotely to execute arbitrary code.
  2. A remote code execution vulnerability in 3D Viewer can be exploited remotely to execute arbitrary code.
  3. A remote code execution vulnerability in Autodesk FBX SDK 2020 can be exploited remotely to execute arbitrary code.
Пораженные продукты

3D Builder
3D Viewer
Autodesk® FBX® SDK 2020 or prior

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2023-36770
CVE-2023-36772
CVE-2023-36740
CVE-2023-36760
CVE-2023-36739
CVE-2022-41303
CVE-2023-36771
CVE-2023-36773
Оказываемое влияние
?
ACE 
[?]

SB 
[?]
Связанные продукты
3D Viewer
3D Builder
CVE-IDS
CVE-2023-367705.0Warning
CVE-2023-367725.0Warning
CVE-2023-367405.0Warning
CVE-2023-367605.0Warning
CVE-2023-367395.0Warning
CVE-2022-413035.0Warning
CVE-2023-367715.0Warning
CVE-2023-367735.0Warning