April 15 News, according to foreign media reports, bug Lab experts are busy helping Microsoft fix some serious vulnerabilities that affect two types of services provided by Microsoft, the most important of which are persistent scripting code injection vulnerabilities that are found in Microsoft's partner Web cloud services.
To prove their findings, the experts produced a video showing how an attacker could execute malicious code by injecting a persistent scripting code into a vulnerability in the Microsoft Cloud ASPX service. The main character in this video is Benjamin Kunz Mejri, chief executive of the lab. This vulnerability allows remote attackers or local low-level user accounts to inject or execute malicious code. A successful attack can result in session hijacking.
Microsoft partner Web Cloud services are not the only ones found to be vulnerable. The company's Afkar service was also found to have a cross-site scripting vulnerability that could allow a remote attacker to hijack a user's session and manipulate the text.