Microsoft released 58 fixes today security in 10+ productand its services as part of the monthly Patch Tuesday update bundle.
The 22 fixes out of a total of 58 released by the company are classified as Remote Code Execution (RCE) vulnerabilities.
These are security vulnerabilities that need to be addressed immediately, as they are easier to use, as they do not require any interaction from users, via the Internet or a local network.
This month, we have RCE in many products της Microsoft όπως: Windows NTFS, Exchange Server, Microsoft Dynamics, Excel, PowerPoint, SharePoint, Visual Studio and Hyper-V.
The highest score of these errors, and for those who are most likely to release exploits, are the RCE errors that affect Exchange Server (CVE-2020-17143, CVE-2020-17144, CVE-2020-17141, CVE-2020-17117, CVE-2020-17132, , CVE-2020-17142) and SharePoint (CVE-2020-17118, CVE-2020-17121).
Of course it is advisable to update immediately, as due to their nature, Exchange and SharePoint systems are regularly connected to the Internet.
Another major security flaw that was fixed this month is a bug in Hyper-V, Microsoft's virtualization technology used to host virtual machines.
With a malicious packet SMB, this bug could allow remote attackers to compromise virtualized (sandboxed) environments, which Hyper-V is not supposed to allow.
More details at Microsoft Security Update Guide portal