April 15 News, according to foreign media reports, bug Lab experts are busy helping Microsoft fix some serious vulnerabilities that affect two types of services provided by Microsoft, the most important of which are persistent scripting code injection vulnerabilities that are found in Microsoft's partner Web cloud services.
To prove their findings, the experts produced a video showing how an attacker could execute malicious code by injecting a persistent scripting code into a vulnerability in the Microsoft Cloud ASPX service. The main character in this video is Benjamin Kunz Mejri, chief executive of the lab. This vulnerability allows remote attackers or local low-level user accounts to inject or execute malicious code. A successful attack can result in session hijacking.
Microsoft partner Web Cloud services are not the only ones found to be vulnerable. The company's Afkar service was also found to have a cross-site scripting vulnerability that could allow a remote attacker to hijack a user's session and manipulate the text.
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.