VORANT. Threat Intelligence Sign in Get the full feed

Microsoft Patches Six Actively Exploited Flaws

high vulnerability

Microsoft's June 2021 update fixes six actively exploited vulnerabilities that could crash apps or let attackers control PCs.

IPA (Japan's Information-technology Promotion Agency) issued an alert on June 9, 2021 regarding Microsoft's monthly security update, which addresses multiple vulnerabilities in Microsoft products. Among the disclosed flaws, six—CVE-2021-33742, CVE-2021-33739, CVE-2021-31956, CVE-2021-31955, CVE-2021-31201, and CVE-2021-31199—were confirmed by Microsoft as being actively exploited in the wild at the time of disclosure.

Successful exploitation of these vulnerabilities could result in application crashes or full remote control of affected systems by attackers. Given the confirmed in-the-wild exploitation, IPA urged users and administrators to apply the patches immediately via Windows Update to prevent further damage. The advisory is informational in nature, directing readers to Microsoft's official patch channels and IPA's security center for guidance, without providing additional technical detail on the exploitation methods or threat actors involved.

Mentioned in this report

Vulnerabilities CVE-2021-31199KEVCVE-2021-31201KEVCVE-2021-31955KEVCVE-2021-31956KEVCVE-2021-33739KEVCVE-2021-33742KEV

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2021/20210609-ms.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free