This months Microsoft Update Tuesday is pretty light save for the Internet Explorer bulletin. The IE bulletin, as is usual, has the most updates for bugs and is rated critical. The other three bulletins are rated as important and provide updates for the remaining five vulnerabilities. Of these 37 CVEs, 36 are remote code execution vulnerabilities. The remaining 36 vulnerabilities are mostly the result of use-after-free vulnerabilities. This last vulnerability allows attackers to use the XMLDOM ActiveX object to gain information on local drive and network settings.”]
Source: https://blog.talosintelligence.com/2014/09/microsoft-update-tuesday-september-2014.html

