CERT-In Advisory
CIAD-2023-0040
Multiple Vulnerabilities in Microsoft Products
Original Issue Date: November 16, 2023
Severity Rating: High
Software Affected
- Microsoft Office
- Microsoft Windows
- Browser
- Extended Security Updates (ESU)
- Developer Tools
- Azure
- System Center
- Microsoft Dynamics
- Exchange Server
Overview
Multiple Vulnerabilities have been reported in Microsoft Products which could be exploited by an attacker to gain elevated privileges, conduct remote execution attacks, access sensitive information, bypass security restrictions, perform spoofing attacks and conduct a Denial of Service (DoS) attack on the targeted system.
Description
Multiple vulnerabilities have been reported in various Microsoft products:

Solution
Apply appropriate remediation/fixes issued by the vendor:
https://msrc.microsoft.com/update-guide/releaseNote/2023-Nov
Vendor Information
Microsoft
https://msrc.microsoft.com/update-guide/releaseNote/2023-Nov
References
https://msrc.microsoft.com/update-guide/releaseNote/2023-Nov
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|