Published on: 12 August 2020
Last update on: 15 September 2020
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components. The list of security updates can be found at:
https://support.microsoft.com/en-us/help/20200811/security-update-deployment-information-august-11-2020
Reports indicate that active exploitations against the vulnerability in Windows (CVE-2020-1464) for spoofing and the vulnerability in Internet Explorer (CVE-2020-1380) for remote code execution have been observed. System administrators are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
The proof-of-concept and workable exploit code against the elevation of privilege vulnerability (CVE-2020-1472) in Microsoft’s Netlogon has been publicly available on the Internet. The vulnerability affects Windows Server 2008 R2 and later. System administrators are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
Depending on the vulnerability exploited, a successful attack could lead to remote code execution, elevation of privilege, denial of service, information disclosure and spoofing.
Patches for affected products are available from the Windows Update / Microsoft Update Catalog. Users of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk.
https://support.microsoft.com/en-hk/help/4578013/security-update-for-windows-8-1-rt-8-1-and-server-2012-r2
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1530
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1537
https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/2020-Aug
https://www.hkcert.org/my_url/en/alert/20081201
https://us-cert.cisa.gov/ncas/current-activity/2020/08/11/microsoft-releases-august-2020-security-updates
https://us-cert.cisa.gov/ncas/current-activity/2020/08/11/microsoft-addresses-rce-and-spoofing-vulnerabilities-under-active
https://us-cert.cisa.gov/ncas/current-activity/2020/09/14/exploit-netlogon-remote-protocol-vulnerability-cve-2020-1472
https://www.secura.com/blog/zero-logon
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-0604
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1046
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1337
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1339
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1377 (to CVE-2020-1380)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1383
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1417
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1455
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1459
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1464
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1466
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1467
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1470
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1472 (to CVE-2020-1480)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1483 (to CVE-2020-1490)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1492 (to CVE-2020-1505)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1509 (to CVE-2020-1522)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1524 (to CVE-2020-1531)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1533 (to CVE-2020-1558)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1560 (to CVE-2020-1571)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1573
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1574
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1577 (to CVE-2020-1585)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1587
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1591
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1597