The Indian Computer Emergency Response Team (CERT-In) has issued a high-severity advisory warning users of multiple vulnerabilities in Microsoft products, including Windows, Office, Dynamics, SQL Server, and Azure. The flaws, disclosed on August 18, 2025, could allow attackers to gain elevated privileges, steal sensitive data, or even take remote control of affected systems.
Software affected
The vulnerabilities impact a wide range of Microsoft offerings. These include Microsoft Windows, Office, Dynamics, SQL Server, System Center, Azure, Apps, and even extended security updates (ESU) for legacy products. Open source and developer tools, along with Microsoft’s browser and device software, are also affected.
Nature of the risk
According to the advisory, attackers could exploit these flaws to:
• Gain elevated privileges
• Access sensitive information
• Conduct remote code execution attacks
• Bypass security restrictions
• Carry out spoofing attacks
• Cause denial-of-service (DoS) conditions
• Tamper with system settings
The government has rated the severity as high, making immediate attention necessary for both individuals and organizations.
Who should be concerned
CERT-In has urged IT administrators, enterprises, and individual users to take action. Security teams managing Microsoft environments are particularly advised to review system security and apply patches immediately.
Impact if left unpatched
The advisory notes that unaddressed vulnerabilities could result in:
• System compromise
• Exfiltration of data
• Ransomware attacks
• System crashes and instability
Such risks make it crucial for users to update their Microsoft products without delay.
What you should do
Microsoft has already released security updates addressing these issues. CERT-In recommends installing the latest patches from Microsoft’s official update channels. Users are also advised to maintain strong system monitoring, restrict unnecessary privileges, and regularly back up critical data.
With the widespread use of Microsoft products in India, the vulnerabilities pose a significant security threat. Ensuring timely updates and following security best practices remain the most effective ways to safeguard against these potential exploits.
Discover the latest Business News, Sensex, and Nifty updates. Obtain Personal Finance insights, tax queries, and expert opinions on Moneycontrol or download the Moneycontrol App to stay updated!
Find the best of Al News in one place, specially curated for you every weekend.
Stay on top of the latest tech trends and biggest startup news.