On March 11, NSFOCUS CERT reported the release of Microsoft’s March Security Update, addressing 83 security vulnerabilities in products like Windows, Microsoft Office, Microsoft SQL Server, and Azure. The update includes eight critical vulnerabilities and 75 important ones, with risks such as privilege escalation and remote code execution. Key vulnerabilities include:
- CVE-2026-26110: Microsoft Office Remote Code Execution Vulnerability (CVSS score: 8.4)
- CVE-2026-26113: Microsoft Office Remote Code Execution Vulnerability (CVSS score: 8.4)
- CVE-2026-26144: Microsoft Excel Information Disclosure Vulnerability (CVSS score: 7.5)
- CVE-2026-23669: Windows Print Spooler Remote Code Execution Vulnerability (CVSS score: 8.8)
- CVE-2026-24294: Windows SMB Server Privilege Escalation Vulnerability (CVSS score: 7.8)
- CVE-2026-23668: Windows Graphics Component Privilege Escalation Vulnerability (CVSS score: 7.0)
Affected product versions include various editions of Microsoft Office, Windows Server 2012 R2, Windows Server 2016, Windows 10, and Windows 11. Microsoft has released security patches for these vulnerabilities, and users are encouraged to install them promptly.