17 Aug, 2025 | Sunday
Trending : LaptopsAppsHow To

Government has a warning for Microsoft's Windows 11, 10 users: Here's what you need to do

The government's CERT-IT body issued an advisory alerting users about security vulnerabilities in Microsoft products like Windows 11, 10, and others.

Published By: Pranav Sawant

Published: Apr 13, 2024, 06:29 PM IST

Microsoft

Story Highlights

  • CERT-In on Friday issued an advisory for Microsoft users.
  • The advisory alerted users of a security flaw in select Microsoft products.
  • Windows 11, 10, and other products have system-level vulnerabilities.

The Indian Computer Emergency Response Team (CERT-In) shared an advisory on Friday that warns users of multiple vulnerabilities in Microsoft products. The government body revealed that it found flaws in Windows 11, Windows 10, and some other Windows products and services. These vulnerabilities let attackers bypass security restrictions and obtain vital information about users. Let’s see what are the exact products that are exposed to these vulnerabilities and how you can protect yourself.

Which Microsoft products are affected?

CERT-In in its advisory revealed that there are vulnerabilities in more than 35 versions of Microsoft products. These versions are of the following products products:  Windows 11, Windows 10, Microsoft Office, Browser, Developer tools, Developer Tools, Azure, Microsoft Dynamics, Exchange Server, and System Center.

“Multiple vulnerabilities have been reported in Microsoft Windows which could allow an attacker to execute arbitrary code, bypass security features, and compromise the target system,” noted the advisory.

These vulnerabilities exist due to improper access restrictions within the proxy driver and insufficient implementation of the Mark of the Web (MotW) feature in Microsoft Windows.

“The SmartScreen Security feature protection mechanism bypasses the Mark of the Web (MotW) feature and allows malware to execute on a target system. The threat acts may exploit these vulnerabilities by sending specially crafted requests.”

What’s the solution?

CERT-In advised the users to download the latest updates of the following apps from the vendor websites.  You can install the latest version of the apps from the Microsoft Store or the product page of these apps. They can also update their Windows version to the latest one.

It’s always better to be on the latest version for apps or OS as the company may have already patched the issues.

Apart from Microsoft vulnerabilities, CERT-In also warned users of a flaw in Android and Mozilla Firefox web browsers. These vulnerabilities could grant unauthorised access to personal data and DoS attacks.

TRENDING NOW

The Android versions with vulnerabilities include Android 12/12L, Android 13, and Android 14. As for Firefox, versions before 124.0.1 and Firefox ESR versions below 115.9.1 are vulnerable to attacks. Again, in this case, users need to update to the latest version.

Get latest Tech and Auto news from Techlusive on our WhatsApp Channel, Facebook, X (Twitter), Instagram and YouTube.

Author Name | Pranav Sawant

Select Language