Skip to main content

Microsoft Malware Protection Engine Remote Code Execution Vulnerability

Last Update Date: 8 Dec 2017 09:43 Release Date: 8 Dec 2017 3569 Views

RISK: Medium Risk

TYPE: Security software and application - Security Software & Appliance

TYPE: Security Software & Appliance

A vulnerability was identified in Microsoft Malware Protection Engine, which could be exploited by remote attackers to take control of an affected system.


Impact

  • Remote Code Execution

System / Technologies affected

Malware Protection Engine piror to Version 1.1.14306.0 in below products:

  • Microsoft Endpoint Protection
  • Microsoft Exchange Server 2013
  • Microsoft Exchange Server 2016
  • Microsoft Forefront Endpoint Protection
  • Microsoft Security Essentials
  • Windows Defender
  • Windows Intune Endpoint Protection

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (Version 1.1.14405.2 or later version)

Vulnerability Identifier


Source


Related Link