In the November 2020 Microsoft security patch release, Microsoft updated its vulnerability information page. Following the new patch information format, below are the CVEs that Trend Micro Cloud One Workload covers in the July 2021 release:
CVE-2021-26432 - Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability CVSS:3.0 9.8/8.5
TREND MICRO PROTECTION INFORMATION
Cloud One Workload and Deep Security shield networks through the following Deep Packet Inspection (DPI) rules. Trend Micro customers using the Vulnerability
Protection are also protected from attacks using these vulnerabilities.
DPI Rule Number
DPI Rule Name
Vulnerability Protection Compatibility
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability (CVE-2021-34480)
Microsoft Windows Services NFS ONCRPC XDR Driver Remote Code Execution Vulnerability (CVE-2021-26432)
Administrators of NGINX web servers running PHP-FPM are advised to patch a vulnerability (CVE-2019-11043) that can let threat actors execute remote code on vulnerable, NGINX-enabled web servers. Here’s what you need to know.