Security
Headlines
HeadlinesLatestCVEs

Tag

#microsoft

CVE-2021-40464: Security Update Guide - Microsoft Security Response Center

Windows Nearby Sharing Elevation of Privilege Vulnerability

CVE
#vulnerability#windows#microsoft
Power Platform is Here! Introducing the Dynamics 365 and Power Platform Bug Bounty Program

Microsoft is excited to announce the addition of Power Platform to the newly rebranded Dynamics 365 and Power Platform Bounty Program. Through this expanded program, we encourage researchers to discover and report high impact security vulnerabilities they may find in the new Power Platform scope to help protect customers. We offer awards up to $20,000 USD for eligible submissions.

CVE-2021-40487: Microsoft SharePoint Server Remote Code Execution Vulnerability

*What is the attack vector for this vulnerability?* In a network-based attack, an authenticated attacker can gain access to create a site and could execute code remotely within the SharePoint Server.

CVE-2021-40482: Microsoft SharePoint Server Information Disclosure Vulnerability

*What kind of information can be disclosed?* An attacker can gain access to an organizational's email, sites, filename, url of file...