Critical Vulnerabilities in Microsoft Visual Studio and SMB Allow Remote Code Execution
Article Content
- •Microsoft released critical updates for vulnerabilities in Visual Studio and SMB.
- •MS09-035 affects Visual Studio 2003, 2005, and 2008, while MS09-001 targets SMB vulnerabilities.
- •Immediate installation of updates is recommended to prevent remote code execution.
Microsoft has issued security bulletins MS09-035 and MS09-001 addressing vulnerabilities in Visual Studio Active Template Libraries and SMB, respectively. The vulnerabilities could allow remote code execution, impacting various versions of Visual Studio and Windows systems. Specifically, MS09-035 affects Visual Studio 2003, 2005, and 2008, while MS09-001 pertains to SMB vulnerabilities in Windows operating systems. Users are advised to install the necessary updates to mitigate these risks. The updates are critical for systems still in use, particularly those running older versions of Windows. Microsoft has provided detailed instructions and links for downloading the updates. The vulnerabilities pose a significant risk to organizations still using outdated software. Immediate action is recommended to prevent potential exploitation.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…