{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Microsoft Infopath 2013 Service Pack 1 (\u00e9dition 64 bits)","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"ChakraCore","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"C# SDK pour Azure IoT","product":{"name":"Azure","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Exchange Server 2013 Cumulative Update 20","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Exchange Server 2013 Cumulative Update 19","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Exchange Server 2013 Service Pack 1","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Exchange Server 2010 Service Pack 3 Update Rollup 21","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Exchange Server 2016 Cumulative Update 9","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Exchange Server 2016 Cumulative Update 8","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Java SDK pour Azure IoT","product":{"name":"Azure","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Infopath 2013 Service Pack 1 (\u00e9dition 32 bits)","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"C SDK pour Azure IoT","product":{"name":"Azure","vendor":{"name":"Microsoft","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2018-0946","url":"https://www.cve.org/CVERecord?id=CVE-2018-0946"},{"name":"CVE-2018-8153","url":"https://www.cve.org/CVERecord?id=CVE-2018-8153"},{"name":"CVE-2018-0954","url":"https://www.cve.org/CVERecord?id=CVE-2018-0954"},{"name":"CVE-2018-8151","url":"https://www.cve.org/CVERecord?id=CVE-2018-8151"},{"name":"CVE-2018-8178","url":"https://www.cve.org/CVERecord?id=CVE-2018-8178"},{"name":"CVE-2018-0945","url":"https://www.cve.org/CVERecord?id=CVE-2018-0945"},{"name":"CVE-2018-8137","url":"https://www.cve.org/CVERecord?id=CVE-2018-8137"},{"name":"CVE-2018-0953","url":"https://www.cve.org/CVERecord?id=CVE-2018-0953"},{"name":"CVE-2018-8173","url":"https://www.cve.org/CVERecord?id=CVE-2018-8173"},{"name":"CVE-2018-8128","url":"https://www.cve.org/CVERecord?id=CVE-2018-8128"},{"name":"CVE-2018-8133","url":"https://www.cve.org/CVERecord?id=CVE-2018-8133"},{"name":"CVE-2018-8177","url":"https://www.cve.org/CVERecord?id=CVE-2018-8177"},{"name":"CVE-2018-8119","url":"https://www.cve.org/CVERecord?id=CVE-2018-8119"},{"name":"CVE-2018-8159","url":"https://www.cve.org/CVERecord?id=CVE-2018-8159"},{"name":"CVE-2018-8130","url":"https://www.cve.org/CVERecord?id=CVE-2018-8130"},{"name":"CVE-2018-8152","url":"https://www.cve.org/CVERecord?id=CVE-2018-8152"},{"name":"CVE-2018-8139","url":"https://www.cve.org/CVERecord?id=CVE-2018-8139"},{"name":"CVE-2018-0943","url":"https://www.cve.org/CVERecord?id=CVE-2018-0943"},{"name":"CVE-2018-8145","url":"https://www.cve.org/CVERecord?id=CVE-2018-8145"},{"name":"CVE-2018-8154","url":"https://www.cve.org/CVERecord?id=CVE-2018-8154"},{"name":"CVE-2018-1022","url":"https://www.cve.org/CVERecord?id=CVE-2018-1022"}],"links":[],"reference":"CERTFR-2018-AVI-223","revisions":[{"description":"Version initiale","revision_date":"2018-05-09T00:00:00.000000"}],"risks":[{"description":"Divulgation d'informations"},{"description":"Usurpation d'identit\u00e9"},{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"\u00c9l\u00e9vation de privil\u00e8ges"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans <span\nclass=\"textit\">les produits Microsoft</span>. Elles permettent \u00e0 un\nattaquant de provoquer une divulgation d'informations, une \u00e9l\u00e9vation de\nprivil\u00e8ges, une ex\u00e9cution de code \u00e0 distance et une usurpation\nd'identit\u00e9.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans les produits Microsoft","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Microsoft du 08 mai 2018","url":"https://portal.msrc.microsoft.com/fr-FR/security-guidance"}]}
