| MS11-003 |
Cumulative Security Update for Internet Explorer (Replaces MS10-090 ) |
Internet Explorer
CVE-2010-3971
CVE-2011-0035
CVE-2011-0036
CVE-2011-0038 |
KB 2482017 |
ACTIVELY EXPLOITED. |
Severity:Critical
Exploitability: 1,1,1 |
PATCH NOW! |
Critical |
| MS11-004 |
Vulnerability in Internet Information Services (IIS) FTP Service Could Allow Remote Code Execution |
IIS
CVE-2010-3972 |
KB 2489256 |
POC Available. |
Severity:Important
Exploitability: 1 |
PATCH NOW! |
Critical |
| MS11-005 |
DoS Vulnerability in Active Directory (Replaces MS10-068 MS10-101 ) |
Active Directory
CVE-2011-0040 |
KB 2478953 |
None Known. |
Severity:Important
Exploitability: 3 |
Important |
Important |
| MS11-006 |
Remote Code Execution Vulnerability in Windows Shell Graphics Processing (Replaces MS10-046 ) |
Windows Shell
CVE-2010-3970 |
KB 2483185 |
Exploit Available! |
Severity:Critical
Exploitability: 1 |
PATCH NOW! |
Critical |
| MS11-007 |
Remote Code Execution Vulnerability in the OpenType Compact Font Format (CFF) Driver (Replaces MS10-091 ) |
Open Type Compact Font Format Driver
CVE-2011-0033 |
KB 2485376 |
None Known. |
Severity:Critical
Exploitability: 1 |
Critical |
Critical |
| MS11-008 |
Remote Code Execution Vulnerabilities in Microsoft Visio (Replaces MS10-028 MS10-036 ) |
Visio
CVE-2011-0092
CVE-2011-0093 |
KB 2451879 |
None Known. |
Severity:Important
Exploitability: 1,1 |
Critical |
Important |
| MS11-009 |
Information Disclosure Vulnerability in JScript and VBScript Scripting Engines (Replaces MS10-022 ) |
VBScript/JScript
CVE-2011-0031 |
KB 2475792 |
None Known. |
Severity:Important
Exploitability: 3 |
Important |
Important |
| MS11-010 |
Privilege Elevation Vulnerability in Windows Client/Server Run-time Subsystem (Replaces MS10-011 ) |
Client/Server Runtime
CVE-2011-0030 |
KB 2476687 |
None Known. |
Severity:Important
Exploitability: 1 |
Important |
Important |
| MS11-011 |
Privilege Elevation Vulnerabilities in Windows Kernel (Replaces MS10-021 MS10-047 ) |
Windows Kernel
CVE-2010-4398
CVE-2011-0045 |
KB 2393802 |
None Known. |
Severity:Important
Exploitability: 1 |
Important |
Important |
| MS11-012 |
Privilege Elevation Vulnerabilities in Windows Kernel-Mode Drivers (Replaces MS10-098 ) |
Windows Kernel-Mode Drivers
CVE-2011-0086
CVE2011-0087
CVE2011-0088
CVE2011-0089
CVE-2011-0090 |
KB 2479628 |
None Known. |
Severity:Important
Exploitability: 1,1,1,1,1 |
Important |
Important |
| MS11-013 |
Privilege Elevation Vulnerabilities in Kerberos (Replaces MS10-014 ) |
Kerberos
CVE-2011-0043
CVE-2011-0091 |
KB 2496930 |
Publically Disclosed. |
Severity:Important
Exploitability: 1,1 |
Important |
Important |
| MS11-014 |
Privilege Elevation Vulnerability in Local Security Authority Subsystem Service (Replaces MS08-002 ) |
LSASS
2011-0039 |
KB 2478960 |
None Known. |
Severity:Important
Exploitability: 1 |
Important |
Important |