Fixlet Site - EnterpriseSecurity Current Version: 833 Published: Wed, 14 Feb 2007 07:23:10 GMT *************************************************************** Title: MS07-005: Vulnerability in Step-by-Step Interactive Training Could Allow Remote Code Execution - Windows 2000/XP/2003 Severity: Important Fixlet ID: 700501 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-005.mspx Fixlet Description: Microsoft has released a security update for Interactive Training that eliminates a newly discovered security vulnerability. If successfully exploited, an attacker could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS07-005: CORRUPT PATCH - Windows 2000/XP/2003 Severity: Important Fixlet ID: 700502 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-005.mspx *************************************************************** Title: MS07-005: Vulnerability in Step-by-Step Interactive Training Could Allow Remote Code Execution - Windows XP/2003 (x64) Severity: Important Fixlet ID: 700505 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-005.mspx Fixlet Description: Microsoft has released a security update for Interactive Training that eliminates a newly discovered security vulnerability. If successfully exploited, an attacker could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS07-005: CORRUPT PATCH - Windows XP/2003 (x64) Severity: Important Fixlet ID: 700506 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-005.mspx *************************************************************** Title: MS07-006: Vulnerability in Windows Shell Could Allow Elevation of Privilege - Windows XP SP2 Severity: Important Fixlet ID: 700601 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-006: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 700602 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx *************************************************************** Title: MS07-006: Vulnerability in Windows Shell Could Allow Elevation of Privilege - Windows Server 2003 Severity: Important Fixlet ID: 700603 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-006: CORRUPT PATCH - Windows Server 2003 Severity: Important Fixlet ID: 700604 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx *************************************************************** Title: MS07-006: Vulnerability in Windows Shell Could Allow Elevation of Privilege - Windows XP/2003 (x64) Severity: Important Fixlet ID: 700605 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-006: CORRUPT PATCH - Windows XP/2003 (x64) Severity: Important Fixlet ID: 700606 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx *************************************************************** Title: MS07-006: Vulnerability in Windows Shell Could Allow Elevation of Privilege - Windows XP/2003 (x64) - BES < 6.0 Severity: Important Fixlet ID: 700607 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-006.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming. *************************************************************** Title: MS07-007: Vulnerability in Windows Image Acquisition Service Could Allow Elevation of Privilege - Windows XP SP2 Severity: Important Fixlet ID: 700701 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-007.mspx Fixlet Description: Microsoft has released an update resolving a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-007: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 700702 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-007.mspx *************************************************************** Title: MS07-008: Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution - Windows 2000 SP4 Severity: Critical Fixlet ID: 700801 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported vulnerability as well as additional issues discovered through internal investigations. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the affected workstation. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-008: CORRUPT PATCH - Windows 2000 SP4 Severity: Critical Fixlet ID: 700802 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx *************************************************************** Title: MS07-008: Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution - Windows XP SP2 Severity: Critical Fixlet ID: 700803 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported vulnerability as well as additional issues discovered through internal investigations. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the affected workstation. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-008: CORRUPT PATCH - Windows XP SP2 Severity: Critical Fixlet ID: 700804 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx *************************************************************** Title: MS07-008: Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution - Windows Server 2003 Severity: Moderate Fixlet ID: 700805 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported vulnerability as well as additional issues discovered through internal investigations. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the affected workstation. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-008: CORRUPT PATCH - Windows Server 2003 Severity: Moderate Fixlet ID: 700806 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx *************************************************************** Title: MS07-008: Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 700807 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported vulnerability as well as additional issues discovered through internal investigations. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the affected workstation. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-008: CORRUPT PATCH - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 700808 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx *************************************************************** Title: MS07-008: Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution - Windows XP/2003 (x64) - BES < 6.0 Severity: Critical Fixlet ID: 700809 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx Fixlet Description: Microsoft has released a patch eliminating a newly discovered, privately reported vulnerability as well as additional issues discovered through internal investigations. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the affected workstation. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming. *************************************************************** Title: MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution - MDAC 2.81 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700901 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx Fixlet Description: Microsoft has released a patch eliminating a newly-discovered, publicly-reported security vulnerability in the Microsoft Data Access Components (MDAC) Function. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-009: CORRUPT PATCH - MDAC 2.81 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700902 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx *************************************************************** Title: MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution - MDAC 2.71 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700903 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx Fixlet Description: Microsoft has released a patch eliminating a newly-discovered, publicly-reported security vulnerability in the Microsoft Data Access Components (MDAC) Function. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-009: CORRUPT PATCH - MDAC 2.71 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700904 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx *************************************************************** Title: MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Server 2003 Severity: Moderate Fixlet ID: 700905 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx Fixlet Description: Microsoft has released a patch eliminating a newly-discovered, publicly-reported security vulnerability in the Microsoft Data Access Components (MDAC) Function. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-009: CORRUPT PATCH - Windows Server 2003 Severity: Moderate Fixlet ID: 700906 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx *************************************************************** Title: MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution - MDAC 2.80 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700907 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx Fixlet Description: Microsoft has released a patch eliminating a newly-discovered, publicly-reported security vulnerability in the Microsoft Data Access Components (MDAC) Function. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-009: CORRUPT PATCH - MDAC 2.80 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700908 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx *************************************************************** Title: MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution - Windows XP SP2 Severity: Critical Fixlet ID: 700909 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx Fixlet Description: Microsoft has released a patch eliminating a newly-discovered, publicly-reported security vulnerability in the Microsoft Data Access Components (MDAC) Function. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-009: CORRUPT PATCH - Windows XP SP2 Severity: Critical Fixlet ID: 700910 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx *************************************************************** Title: MS07-009: Vulnerability in Microsoft Data Access Components Could Allow Remote Code Execution - MDAC 2.53 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700911 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx Fixlet Description: Microsoft has released a patch eliminating a newly-discovered, publicly-reported security vulnerability in the Microsoft Data Access Components (MDAC) Function. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-009: CORRUPT PATCH - MDAC 2.53 - Windows 2000 SP4 Severity: Critical Fixlet ID: 700912 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-009.mspx *************************************************************** Title: MS07-010: Vulnerability in Microsoft Malware Protection Engine Could Allow Remote Code Execution - Live OneCare Severity: Critical Fixlet ID: 701001 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-010.mspx Fixlet Description: This update resolves a newly discovered, privately reported vulnerability in the Microsoft Malware Protection Engine. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. *************************************************************** Title: MS07-010: Vulnerability in Microsoft Malware Protection Engine Could Allow Remote Code Execution - Microsoft Antigen for Exchange Server 9.x Severity: Critical Fixlet ID: 701002 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-010.mspx Fixlet Description: This update resolves a newly discovered, privately reported vulnerability in the Microsoft Malware Protection Engine. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. *************************************************************** Title: MS07-010: Vulnerability in Microsoft Malware Protection Engine Could Allow Remote Code Execution - Microsoft Antigen for SMTP Server 9.x Severity: Critical Fixlet ID: 701003 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-010.mspx Fixlet Description: This update resolves a newly discovered, privately reported vulnerability in the Microsoft Malware Protection Engine. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. *************************************************************** Title: MS07-010: Vulnerability in Microsoft Malware Protection Engine Could Allow Remote Code Execution - Windows Defender Severity: Critical Fixlet ID: 701004 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-010.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability in the Microsoft Malware Protection Engine. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. *************************************************************** Title: MS07-010: Vulnerability in Microsoft Malware Protection Engine Could Allow Remote Code Execution - Windows Defender - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 701005 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-010.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability in the Microsoft Malware Protection Engine. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. *************************************************************** Title: MS07-010: Vulnerability in Microsoft Malware Protection Engine Could Allow Remote Code Execution - ForeFront Security for SharePoint Server 10 Severity: Critical Fixlet ID: 701007 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-010.mspx Fixlet Description: This update resolves a newly discovered, privately reported vulnerability in the Microsoft Malware Protection Engine. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. *************************************************************** Title: MS07-011: Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution - Windows 2000 SP4 Severity: Important Fixlet ID: 701101 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx Fixlet Description: Microsoft has released an update resolving a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-011: CORRUPT PATCH - Windows 2000 SP4 Severity: Important Fixlet ID: 701102 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx *************************************************************** Title: MS07-011: Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution - Windows XP SP2 Severity: Important Fixlet ID: 701103 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx Fixlet Description: Microsoft has released an update resolving a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-011: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 701104 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx *************************************************************** Title: MS07-011: Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution - Windows Server 2003 Severity: Important Fixlet ID: 701105 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx Fixlet Description: Microsoft has released an update resolving a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-011: CORRUPT PATCH - Windows Server 2003 Severity: Important Fixlet ID: 701106 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx *************************************************************** Title: MS07-011: Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701107 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx Fixlet Description: Microsoft has released an update resolving a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-011: Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution - Windows XP/2003 (x64) - BES < 6.0 Severity: Important Fixlet ID: 701108 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx Fixlet Description: Microsoft has released an update resolving a newly discovered, privately reported, vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming. *************************************************************** Title: MS07-011: CORRUPT PATCH - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701110 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-011.mspx *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Windows 2000 SP4 Severity: Important Fixlet ID: 701201 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: CORRUPT PATCH - Windows 2000 SP4 Severity: Important Fixlet ID: 701202 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Windows XP SP2 Severity: Important Fixlet ID: 701203 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 701204 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Windows Server 2003 Severity: Important Fixlet ID: 701205 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: CORRUPT PATCH - Windows Server 2003 Severity: Important Fixlet ID: 701206 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Visual Studio .NET 2002 Severity: Important Fixlet ID: 701207 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Visual Studio .NET 2002 SP1 Severity: Important Fixlet ID: 701209 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Visual Studio .NET 2003 Severity: Important Fixlet ID: 701211 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Visual Studio .NET 2003 SP1 Severity: Important Fixlet ID: 701213 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-012: Vulnerability in Microsoft MFC Could Allow Remote Code Execution - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701215 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-012.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Office XP (Network/Local Install) Severity: Important Fixlet ID: 701306 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2002. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Office XP - Windows NT/2000/XP/2003 (Administrative Install) Severity: Important Fixlet ID: 701307 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2002. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Office XP - 9x/ME (Administrative Install) Severity: Important Fixlet ID: 701308 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2002. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Office 2003 (Network/Local Install) Severity: Important Fixlet ID: 701309 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2003. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Office 2003 (Administrative Install) Severity: Important Fixlet ID: 701310 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2003. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Project 2002 (Network/Local Install) Severity: Important Fixlet ID: 701311 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Project 2002. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Project 2002, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Visio 2002 (Network/Local Install) Severity: Important Fixlet ID: 701312 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Visio 2002. This update resolves a newly-discovered, privately reported vulnerability. On vulnerable versions of Visio 2002, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Windows 2000 SP4 Severity: Important Fixlet ID: 701313 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: CORRUPT PATCH - Windows 2000 SP4 Severity: Important Fixlet ID: 701314 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Windows XP SP2 Severity: Important Fixlet ID: 701315 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 701316 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Windows Server 2003 Severity: Important Fixlet ID: 701317 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: CORRUPT PATCH - Windows Server 2003 Severity: Important Fixlet ID: 701318 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701319 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-013: CORRUPT PATCH - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701320 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx *************************************************************** Title: MS07-013: Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution - Windows XP/2003 (x64) - BES < 6.0 Severity: Important Fixlet ID: 701321 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-013.mspx Fixlet Description: Microsoft has released an update that resolves a newly discovered, privately reported vulnerability. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2000 (Local Install) Severity: Critical Fixlet ID: 701401 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows NT/2000/XP/2003 (Network Install) Severity: Critical Fixlet ID: 701402 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows NT/2000/XP/2003 (Administrative Install) Severity: Critical Fixlet ID: 701403 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows 9x/ME (Network Install) Severity: Critical Fixlet ID: 701404 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows 9x/ME (Administrative Install) Severity: Critical Fixlet ID: 701405 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2002 (Network/Local Install) Severity: Important Fixlet ID: 701406 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2002 - Windows NT/2000/XP/2003 (Administrative Install) Severity: Important Fixlet ID: 701407 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2002 - Windows 9x/ME (Administrative Install) Severity: Important Fixlet ID: 701408 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2003 (Network/Local Install) Severity: Important Fixlet ID: 701409 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2003. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word 2003 (Administrative Install) Severity: Important Fixlet ID: 701410 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-014.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2003. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-014: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution - Word Viewer 2003 Severity: Important Fixlet ID: 701411 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-014.mspx Fixlet Description: Microsoft has released a security patch for Word Viewer 2003. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2000 (Local Install) Severity: Critical Fixlet ID: 701501 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows NT/2000/XP/2003 (Network Install) Severity: Critical Fixlet ID: 701502 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows NT/2000/XP/2003 (Administrative Install) Severity: Critical Fixlet ID: 701503 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows 9x/ME (Network Install) Severity: Critical Fixlet ID: 701504 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows 9x/ME (Administrative Install) Severity: Critical Fixlet ID: 701505 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office XP (Network/Local Install) Severity: Important Fixlet ID: 701506 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office XP - Windows NT/2000/XP/2003 (Administrative Install) Severity: Important Fixlet ID: 701507 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office XP - Windows 9x/ME (Administrative Install) Severity: Important Fixlet ID: 701508 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2003 (Network/Local Install) Severity: Important Fixlet ID: 701509 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2003. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2003 (Administrative Install) Severity: Important Fixlet ID: 701510 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2003. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Visio 2002 (Network/Local Install) Severity: Important Fixlet ID: 701526 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-015.mspx Fixlet Description: Microsoft has released a security patch for Visio 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Project 2000 (Network/Local Install) Severity: Critical Fixlet ID: 701527 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Project 2000. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. *************************************************************** Title: MS07-015: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Project 2002 (Network/Local Install) Severity: Important Fixlet ID: 701528 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-015.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Project 2002. This update resolves several newly-discovered, privately and publicly reported vulnerabilities. On vulnerable versions of Office, if a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of the client workstation. *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 7.0 - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701601 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released a patch that resolves two newly discovered, publicly and privately reported vulnerabilities. An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 7.0 - Windows XP/2003 (x64) Severity: Important Fixlet ID: 701602 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 7.0 - Windows XP/2003 (x64) - BES < 6.0 Severity: Important Fixlet ID: 701603 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released a patch that resolves two newly discovered, publicly and privately reported vulnerabilities. An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming. *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 7.0 - Windows Server 2003 SP1 Severity: Low Fixlet ID: 701605 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released an update resolving two newly discovered, publicly and privately reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 7.0 - Windows Server 2003 SP1 Severity: Low Fixlet ID: 701606 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 6.0 SP1 - Windows 2000 SP4 Severity: Critical Fixlet ID: 701607 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released a patch that resolves two newly discovered, publicly and privately reported vulnerabilities. An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 6.0 SP1 - Windows 2000 SP4 Severity: Critical Fixlet ID: 701608 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 6.0 - Windows XP SP2 Severity: Critical Fixlet ID: 701609 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released an update resolving two newly discovered, publicly and privately reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 6.0 - Windows XP SP2 Severity: Critical Fixlet ID: 701610 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 6.0 - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 701611 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released a patch that resolves two newly discovered, publicly and privately reported vulnerabilities. An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 6.0 - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 701612 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 7.0 - Windows XP SP2 Severity: Important Fixlet ID: 701613 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released an update resolving two newly discovered, publicly and privately reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 7.0 - Windows XP SP2 Severity: Important Fixlet ID: 701614 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 5.01 SP4 - Windows 2000 SP4 Severity: Critical Fixlet ID: 701615 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released a patch that resolves two newly discovered, publicly and privately reported vulnerabilities. An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 5.01 SP4 - Windows 2000 SP4 Severity: Critical Fixlet ID: 701616 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 6.0 - Windows Server 2003 Severity: Critical Fixlet ID: 701617 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released an update resolving two newly discovered, publicly and privately reported vulnerabilities. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS07-016: CORRUPT PATCH - IE 6.0 - Windows Server 2003 Severity: Critical Fixlet ID: 701618 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx *************************************************************** Title: MS07-016: Cumulative Security Update for Internet Explorer - IE 6.0 - Windows XP/2003 (x64) - BES < 6.0 Severity: Critical Fixlet ID: 701619 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx Fixlet Description: Microsoft has released a patch that resolves two newly discovered, publicly and privately reported vulnerabilities. An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are several known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming.