[Bigfix-announcements-simplified-chinese] BES Auto Notification: New Fixlets Published in Fixlet Site: 'Patches for Windows (Simplified Chinese)'

autonotify at us.ibm.com autonotify at us.ibm.com
Fri Dec 19 04:49:08 PST 2014


Fixlet Site - 'Patches for Windows (Simplified Chinese)'
Current Version: 573	Published: Fri, 19 Dec 2014 00:33:24  GMT

New Fixlets:
============

***************************************************************
Title: MS14-075: Vulnerabilities in Microsoft Exchange Server Could Allow Elevation of Privilege - Exchange Server 2010 SP3 - KB2986475 (x64) - v2 (Simplified Chinese)
Severity: Important
Fixlet ID: 1407501
Fixlet Link: http://technet.microsoft.com/library/security/MS14-075

Fixlet Description: Microsoft has released a security update that resolves four privately reported vulnerabilities in Microsoft Exchange Server. The most severe of these vulnerabilities could allow elevation of privilege if a user clicks a specially crafted URL that takes them to a targeted Outlook Web App site. An attacker would have no way to force users to visit a specially crafted website. Instead, an attacker would have to convince them to visit the website, typically by getting them to click a link in an email message or Instant Messenger message that takes them to the attacker's website, and then convince them to click the specially crafted URL. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.



More information about the BigFix-Announcements-Simplified-Chinese mailing list