Vietnam.vn - Nền tảng quảng bá Việt Nam

The Information Security Department warns of 13 new security vulnerabilities in Microsoft products.

Tạp chí Doanh NghiệpTạp chí Doanh Nghiệp19/02/2025


DNVN - On February 18, in response to the emergence of 13 new security vulnerabilities in Microsoft products, the Department of Information Security made recommendations to help units and organizations review their systems, promptly detect and handle them, and limit the risk of cyber attacks.

Photo caption

The Department of Information Security determined that these 13 security vulnerabilities have a high and serious impact level, and are among 67 new vulnerabilities announced by Microsoft in the February 2025 patch. In the list of newly announced vulnerabilities, there are 10 vulnerabilities that allow hackers to execute code remotely, including: CVE-2025-21376 in Windows Lightweight Directory Access Protocol; CVE-2025-21400 on Microsoft SharePoint Server; two vulnerabilities CVE-2025-21392, CVE-2025-21397 in Microsoft Office; Five vulnerabilities CVE-2025-21381, CVE-2025-21386, CVE-2025-21387, CVE-2025-21390, CVE-2025-21394 affect Microsoft Excel and CVE-2025-21379 in DHCP Client Service.

In addition, two security vulnerabilities are being exploited by hackers in the wild, including CVE-2025-21418 in Windows Ancillary Function Driver for WinSock and CVE-2025-21391 in Windows Storage. These vulnerabilities allow attackers to escalate privileges.

For Windows systems, organizations should also be aware of the CVE-2025-21377 vulnerability that can leak NTLM hashes – the cryptographic format used to store passwords on Windows systems. If exploited, attackers can spoof and steal user credentials to access the system.

According to security experts, these serious security vulnerabilities can be exploited by hackers to illegally infiltrate, causing information insecurity and negatively impacting the systems of agencies, organizations and businesses.

Therefore, the Information Security Department recommends that agencies, organizations and businesses carefully study the vulnerabilities that have been warned; conduct checks and reviews to identify computers running Windows operating systems that are at risk of being affected. If the system is affected by these security vulnerabilities, it is necessary to quickly deploy patch updates according to Microsoft's instructions. At the same time, units are encouraged to strengthen monitoring and prepare response plans if signs of attack are detected; regularly monitor warning channels from authorities and large organizations in the field of information security to promptly identify risks of network insecurity.

Thanh Mai (t/h)



Source: https://doanhnghiepvn.vn/cong-nghe/cuc-an-toan-thong-tin-dua-canh-bao-13-lo-hong-bao-mat-moi-trong-cac-san-pham-cua-microsoft/20250219110930213

Comment (0)

No data
No data

Same tag

Same category

What is special about the island near the maritime border with China?
Hanoi is bustling with flower season 'calling winter' to the streets
Amazed by the beautiful landscape like a watercolor painting at Ben En
Admiring the national costumes of 80 beauties competing in Miss International 2025 in Japan

Same author

Heritage

Figure

Enterprise

75 years of Vietnam-China friendship: Mr. Tu Vi Tam's old house on Ba Mong Street, Tinh Tay, Quang Tay

News

Political System

Destination

Product