The bugs are grouped under one umbrella (CVE-2019-0948) and are found in the Microsoft Management Console (MMC) A compromised PC would offer access to a range of privileged functions and access. The issues include multiple cross-site scripting (XSS) bugs and XML external entity (XXE) problems. Microsoft patched the issues in its June Patch Tuesday update. So far, there is no evidence of exploitation of the bugs, according to the researchers, but they say the bugs could allow a more serious attack.
Source: https://threatpost.com/microsoft-management-console-bugs/145791/

