Information disclosure vulnerability in Microsoft Windows - MS16-067ID: oval:org.secpod.oval:def:34307 | Date: (C)2016-05-11 (M)2021-06-02 |
Class: PATCH | Family: windows |
The host is missing an important security update according to Microsoft security bulletin, MS16-067. The update is required to fix an information disclosure vulnerability. A flaw is present in the Microsoft RemoteFX, which is not correctly tied to the session of the mounting user. An attacker who successfully exploited this vulnerability could obtain access to file and directory information on the mounting users USB disk.
Platform: |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |