A financially motivated threat group dubbed "Diesel Vortex" is stealing credentials from freight and logistics operators in the U.S. and Europe in phishing attacks using 52 domains. [...]
A vulnerability marked as problematic has been reported in Microsoft .NET Framework up to 4.8. This issue affects some unknown processing. The manipulation leads to information disclosure.
This vulnerability is documented as CVE-2020-16937. The attack needs to be performed locally. There is not any exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical was found in Microsoft Windows. The impacted element is an unknown function of the component Group Policy Handler. Such manipulation leads to incorrect privilege assignment.
This vulnerability is traded as CVE-2020-16939. An attack has to be approached locally. There is no exploit available.
A patch should be applied to remediate this issue.
A vulnerability has been found in Microsoft Dynamics 365 Commerce and classified as critical. Affected is an unknown function. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2020-16943. The attack can only be initiated within the local network. No exploit exists.
Applying a patch is the recommended action to fix this issue.
A vulnerability identified as problematic has been detected in Microsoft Windows 10 2004/Server 2004. Impacted is an unknown function of the component Kernel. The manipulation leads to information disclosure.
This vulnerability is listed as CVE-2020-16938. The attack must be carried out locally. There is no available exploit.
To fix this issue, it is recommended to deploy a patch.
A vulnerability labeled as critical has been found in Microsoft Word up to 2019. The affected element is an unknown function of the component LNK File Handler. The manipulation results in 7pk security features.
This vulnerability is cataloged as CVE-2020-16933. The attack may be launched remotely. There is no exploit available.
It is advisable to implement a patch to correct this issue.
A vulnerability described as critical has been identified in Microsoft Office 365 Apps for Enterprise/2013 C2R/2019. This affects an unknown function of the component AppVLP. Such manipulation leads to improper authorization.
This vulnerability is documented as CVE-2020-16934. The attack can be executed remotely. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.
A vulnerability was found in Microsoft Outlook 2016/2019/365 Apps for Enterprise. It has been declared as critical. Impacted is an unknown function. Executing a manipulation can lead to memory corruption.
The identification of this vulnerability is CVE-2020-16947. The attack may be launched remotely. There is no exploit available.
It is best practice to apply a patch to resolve this issue.
A vulnerability described as problematic has been identified in Microsoft SharePoint Server 2010 SP2/2013 SP1/2016/2019. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to information disclosure.
This vulnerability is registered as CVE-2020-16942. The attack needs to be launched locally. No exploit is available.
It is advisable to implement a patch to correct this issue.
A vulnerability classified as problematic was found in Microsoft SharePoint Server 2013 SP1/2016/2019. This affects an unknown part. The manipulation results in cross site scripting.
This vulnerability is reported as CVE-2020-16944. The attack can be launched remotely. No exploit exists.
It is best practice to apply a patch to resolve this issue.
A vulnerability, which was classified as problematic, has been found in Microsoft SharePoint Server 2013 SP1/2016/2019. This vulnerability affects unknown code. This manipulation causes cross site scripting.
This vulnerability appears as CVE-2020-16945. The attack may be initiated remotely. There is no available exploit.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as problematic, was found in Microsoft SharePoint Server 2010 SP2/2013 SP1/2016/2019. This issue affects some unknown processing. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2020-16946. The attack may be launched remotely. There is no exploit available.
Applying a patch is advised to resolve this issue.
A vulnerability has been found in Microsoft SharePoint Server 2010 SP2/2013 SP1/2016/2019 and classified as problematic. Impacted is an unknown function. Performing a manipulation results in information disclosure.
This vulnerability is known as CVE-2020-16941. Access to the local network is required for this attack. No exploit is available.
It is suggested to install a patch to address this issue.
A vulnerability described as critical has been identified in Microsoft Windows. This vulnerability affects unknown code of the component User Profile Service. The manipulation results in improper access controls.
This vulnerability is cataloged as CVE-2020-16940. The attack may be launched remotely. There is no exploit available.
A patch should be applied to remediate this issue.
A vulnerability classified as critical was found in Microsoft Windows. Impacted is an unknown function of the component Backup Service. Such manipulation leads to improper access controls.
This vulnerability is documented as CVE-2020-16936. The attack can be executed remotely. There is not any exploit available.
It is advisable to implement a patch to correct this issue.
A vulnerability was found in Microsoft Windows. It has been rated as critical. This issue affects some unknown processing of the component COM Server. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2020-16935. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to install a patch to address this issue.