News

Blog

Wednesday, April 10th, 2024

Threat Report – Microsoft Patch Tuesday – April 2024

Threat Reports are reports created by Smarttech247 based on high and critical severity vulnerabilities that may have a high potential to be exploited in the wild i.e. vulnerabilities that are present in most used products by companies and do not have an auto-update option or they are usually not automatically updated in case that could lead to some service disruption. This report is usually created as soon as the vulnerability is released, therefore we strongly recommend that the information is reviewed, tests are performed and patches are applied before the first proof-of-concept is released.

Even though certain vulnerabilities may not have an active exploit in the wild at the time that we report on them, we take into consideration the wider risk and the impact it could have on systems, should an exploit like that be available after a while. Our duty is to report them on time and we recommend enterprises that, in order to keep critical business systems protected, they should consider, on average, ten working days to check whether or not the new vulnerability affects them, and if so, to implement actions in order to remove the risk.


Overview
Microsoft’s April 2024 Patch Tuesday addressed 149 vulnerabilities, including sixty-seven remote code execution flaws. Among these, only three critical vulnerabilities are addressed, successful exploitation of these vulnerabilities could allow remote code execution and elevation of privilege.


The breakdown of vulnerabilities includes:

  • -67 Remote Code Execution Vulnerabilities
  • -31 Elevation of Privilege Vulnerabilities
  • -27 Security Feature Bypass Vulnerabilities
  • -12 Information Disclosure Vulnerabilities
  • -7 Denial of Service Vulnerabilities
  • -3 Spoofing Vulnerabilities

For more information see the full report:

Contact Us

The data you supply here will not be added to any mailing list or given to any third party providers without further consent. View our Privacy Policy for more information.

    Copyright Smarttech247 - 2021