May 2021 - Microsoft Releases Security Patches
Publish Date: 18 de мая de 2021
Advisory Date: 11 de мая de 2021
DESCRIPTION
In the November 2020 Microsoft security patch release, Microsoft updated its vulnerability information page. Following the new patch information format, below are the CVEs that Trend Micro Cloud One Workload covers in the May 2021 release:
- CVE-2021-26419 - Scripting Engine Memory Corruption Vulnerability
CVSS:3.0 7.5/6.7
- CVE-2021-31181 - Microsoft SharePoint Remote Code Execution Vulnerability
CVSS:3.0 8.8/7.7
- CVE-2021-31166 - HTTP Protocol Stack Remote Code Execution Vulnerability
CVSS:3.0 9.8/8.5
INFORMATION EXPOSURE
Cloud One Workload and Deep Security shield networks through the following Deep Packet Inspection (DPI) rules. Trend Micro customers using the Vulnerability Protection are also protected from attacks using these vulnerabilities.
Vulnerability ID | DPI Rule Number | DPI Rule Name | Release Date | Vulnerability Protection Compatibility |
CVE-2021-26419 | 1010946 | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability (CVE-2021-26419) | 11-May-21 | YES |
CVE-2021-31181 | 1010947 | Microsoft SharePoint Server Remote Code Execution Vulnerability (CVE-2021-31181) | 11-May-21 | YES |
CVE-2021-31166 | 1010949 | Microsoft Windows HTTP Protocol Stack Remote Code Execution Vulnerability (CVE-2021-31166) | 11-May-21 | YES |