Advisory Date: 14 de сентября de 2021

  DESCRIPTION

In the November 2020 Microsoft security patch release, Microsoft updated its vulnerability information page. Following the new patch information format, below are the CVEs that Trend Micro Cloud One Workload covers in the September 2021 release:

  • CVE-2021-26435 - Windows Scripting Engine Memory Corruption Vulnerability
    CVSS:3.0 8.1/7.1

  • CVE-2021-36965 - Windows WLAN AutoConfig Service Remote Code Execution Vulnerability
    CVSS:3.0 8.8/7.7

  • CVE-2021-38647 - Open Management Infrastructure Remote Code Execution Vulnerability
    CVSS:3.0 9.8/8.5

  INFORMATION EXPOSURE

The aforementioned vulnerabilities are addressed by Trend Micro Deep Security and Trend Micro Cloud One Workload Security rules issued in past releases.