NVD disclosure day

Published threat advisories for March 11, 2021

CVE advisoryKnown Exploit

CVE-2021-27085

Internet Explorer Remote Code Execution Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A remote code execution vulnerability affects Internet Explorer, potentially allowing unauthorized data access or service disruption. The risk stems from attackers tricking users into visiting malicious sites. Organizations should identify and address affected Internet Explorer instances.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-27059

Microsoft Office Remote Code Execution Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Microsoft Office has a remote code execution vulnerability. This could allow an attacker to run malicious code on an affected system, potentially leading to unauthorized system control and data compromise. This vulnerability poses a business risk.

• CISA KEV

CVE advisoryCRITICAL

CVE-2021-26897

Windows DNS Server Remote Code Execution Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A critical vulnerability in Windows DNS Server software permits remote code execution, enabling attackers to run unauthorized code on compromised systems. This issue is relevant if your organization uses Windows DNS Server, as unauthenticated attackers could potentially execute arbitrary code via network requests. This

CVE advisoryCRITICAL

CVE-2021-26895

Microsoft Windows DNS Server Remote Code Execution Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A critical remote code execution vulnerability exists in Windows DNS Server software. This allows an unauthenticated attacker to run arbitrary commands on a vulnerable server by sending a specially crafted request over the network. While direct external exposure of DNS servers is not standard, confirming relevance and

CVE advisoryCRITICAL

CVE-2021-26894

Microsoft Windows DNS Server Remote Code Execution Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A critical vulnerability exists in Windows DNS Server, allowing unauthenticated network access for remote code execution. This could potentially impact the confidentiality, integrity, and availability of the server, leading to system compromise. Confirming the presence and exposure of this technology is essential for u

CVE advisoryCRITICAL

CVE-2021-26893

Microsoft Windows DNS Server Remote Code Execution Vulnerability.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A critical vulnerability exists in Windows DNS Server that could allow an unauthenticated attacker to execute arbitrary code remotely. This could lead to the compromise of affected systems and data. It is important to determine if your environment uses vulnerable Windows DNS Servers.

CVE advisoryCRITICAL

CVE-2021-26877

Windows DNS Server Remote Code Execution Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A critical vulnerability exists in Windows DNS Server that could allow an unauthenticated attacker to execute arbitrary code. This flaw affects a fundamental network service, and if reachable, could enable an attacker to gain control of the affected system. Confirming the use and exposure of this technology is importan

CVE advisoryCRITICAL

CVE-2021-26867

Windows Hyper-V Remote Code Execution Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A critical vulnerability exists in Windows Hyper-V that could allow an attacker with low-privileged access to execute arbitrary code on the host system. While the impact could be severe, the typical network segmentation of Hyper-V environments makes exploitation unlikely. Confirmation of affected systems and their expo

CVE advisoryKnown Exploit

CVE-2021-26411

Microsoft Internet Explorer Memory Corruption Vulnerability Advisory

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A memory corruption flaw in Internet Explorer can allow attackers to execute code, potentially leading to system compromise and data breaches. The business risk involves unauthorized system access and operational disruption across affected organizations.

• CISA KEV