NVD disclosure day

Published threat advisories for March 11, 2021

CVE advisoryKnown Exploit

CVE-2021-27085

Internet Explorer Remote Code Execution Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A remote code execution vulnerability affects Internet Explorer, potentially allowing unauthorized data access or service disruption. The risk stems from attackers tricking users into visiting malicious sites. Organizations should identify and address affected Internet Explorer instances.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-27059

Microsoft Office Remote Code Execution Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Microsoft Office has a remote code execution vulnerability. This could allow an attacker to run malicious code on an affected system, potentially leading to unauthorized system control and data compromise. This vulnerability poses a business risk.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-26411

Microsoft Internet Explorer Memory Corruption Vulnerability Advisory

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A memory corruption flaw in Internet Explorer can allow attackers to execute code, potentially leading to system compromise and data breaches. The business risk involves unauthorized system access and operational disruption across affected organizations.

• CISA KEV