Loading

Salesforce response to CVE-2020-0601: Windows CryptoAPI Spoofing Vulnerability

Date de publication: Jan 3, 2025
Description
The Salesforce Security team continuously monitors our systems for any evidence of attempts to exploit vulnerabilities such as those related to the recently disclosed CVE-2020-0601. For more information on this vulnerability, please see the Microsoft security advisory .
Résolution
  • Salesforce is aware of recently reported security vulnerabilities related to CVE-2020-0601, which are affecting specific Windows OS versions.
  • As is the case for many other companies, Salesforce’s infrastructure uses operating systems that are impacted by these vulnerabilities.
    • NOTE: The majority of our services are not affected by this issue.
  • Salesforce is working to remediate these vulnerabilities as quickly as possible.
  • Salesforce will continue to monitor the issue and provide updates as appropriate.
  • In addition to the actions that Salesforce is taking, we encourage our customers to thoroughly evaluate their own systems and take steps to remediate any vulnerabilities identified.
Numéro d’article de la base de connaissances

000380993

 
Chargement
Salesforce Help | Article