September 2012 - Microsoft Releases 2 Security Advisories
2013年2月20日
风险等级: 高
建议日期 : 2012年9月11日
描述
Microsoft addresses the following vulnerabilities in its September batch of patches:
- ((MS12-061) Vulnerability in Visual Studio Team Foundation Server Could Allow Elevation of Privilege (2719584)
Risk Rating: Important
This bulletin addresses a cross-site scripting vulnerability found in Visual Studio Team Foundation Server. Read more here. - (MS12-062) Vulnerability in System Center Configuration Manager Could Allow Elevation of Privilege (2741528)
Risk Rating: Important
This bulletin resolves a cross-site scripting (XSS) vulnerability found in certain versions of System Center Configuration Manager. Read more here.
保护信息
Trend Micro Deep Security shields networks through the following Deep Packet Inspection (DPI) rules. Trend Micro customers using OfficeScan with Intrusion Defense Firewall (IDF) plugin are also protected from attacks using these vulnerabilities.
MS Bulletin ID | Vulnerability ID | DPI Rule Number | DPI Rule Name | Release Date | IDF Compatibility |
MS12-061 | CVE-2012-1892 | 1000552 | Generic Cross Site Scripting(XSS) Prevention | 18-Jul-07 | NO |
MS12-062 | CVE-2012-1522 | 1000552 | Generic Cross Site Scripting(XSS) Prevention | 18-Jul-07 | NO |