2026年4月15日星期三

Microsoft Monthly Security Update (April 2026)

Microsoft Monthly Security Update (April 2026)

Release Date: 15 Apr 2026

RISK: High Risk

TYPE: Operating Systems - Windows OS

Microsoft has released monthly security update for their products:

 

Vulnerable ProductRisk LevelImpactsNotes
WindowsMedium Risk Medium RiskElevation of Privilege
Security Restriction Bypass
Spoofing
Data Manipulation
Information Disclosure
Denial of Service
Remote Code Execution
 
Extended Security Updates (ESU)Medium Risk Medium RiskElevation of Privilege
Security Restriction Bypass
Spoofing
Data Manipulation
Information Disclosure
Denial of Service
Remote Code Execution
 
Developer ToolsMedium Risk Medium RiskInformation Disclosure
Spoofing
Denial of Service
Security Restriction Bypass
 
Microsoft OfficeHigh Risk High RiskSpoofing
Information Disclosure
Remote Code Execution
CVE-2026-32201 is being exploited in the wild. Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
Microsoft DynamicsMedium Risk Medium RiskSecurity Restriction Bypass
Information Disclosure
 
SQL ServerMedium Risk Medium RiskElevation of Privilege
Remote Code Execution
 
AzureMedium Risk Medium RiskElevation of Privilege 
BrowserLow Risk Low RiskSpoofing 
System CenterMedium Risk Medium RiskElevation of Privilege 

 

Number of 'Extremely High Risk' product(s): 0

Number of 'High Risk' product(s): 1

Number of 'Medium Risk' product(s): 7

Number of 'Low Risk' product(s): 1

Evaluation of overall 'Risk Level': High Risk


Impact

  • Remote Code Execution
  • Denial of Service
  • Data Manipulation
  • Information Disclosure
  • Security Restriction Bypass
  • Elevation of Privilege
  • Spoofing

System / Technologies affected

  • Windows
  • Extended Security Updates (ESU)
  • Developer Tools
  • Microsoft Office
  • Microsoft Dynamics
  • SQL Server
  • Azure
  • Browser
  • System Center

Solutions

Before installation of the software, please visit the vendor web-site for more details.

  •  Apply fixes issued by the vendor.

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

Adobe 每月保安更新 (2026年4月)

Adobe 每月保安更新 (2026年4月) 發佈日期: 2026年04月15日 風險: 中度風險 類型: 用戶端 - 辦公室應用 Adobe已為產品提供本月保安更新:   受影響產品 風險程度 影響 備註 詳情(包括 CVE) ...