Jump to the main content block

【Vulnerability Alert】Microsoft Released March 2026 Security Updates

publish date : 2026-03-20 update date : 2026-03-20

Source: Ministry of education information & communication security contingency platform

"" "" ""

Publication Number TACERT-ANA-2026031803035050 Publication Time 2026/03/18 15:21
Incident Type ANA-Vulnerability Alert Discovery Time 2026/03/18 15:21
Impact Level Medium  
[Subject]
【Vulnerability Alert】Microsoft Released March 2026 Security Updates
[Content]
Forwarded from the National Institute of Cyber Security NISAC-200-202603-00000009

Microsoft has released the March 2026 security updates, addressing a total of 84 vulnerabilities across products including SQL Server, Microsoft Office SharePoint, and Active Directory Domain Services. Among these, 16 vulnerabilities are rated as high risk with a CVSS score of 8.8. Please verify your systems and apply the necessary patches as soon as possible.


(Information Sharing Level: WHITE (Information content can be publicly disclosed)
[Affected Platform]

The affected software and services are as follows:

Active Directory Domain Services
ASP.NET Core
Azure Arc
Azure Compute Gallery
Azure Entra ID
Azure IoT Explorer
Azure Linux Virtual Machines
Azure MCP Server
Azure Portal Windows Admin Center
Azure Windows Virtual Machine Agent
Broadcast DVR
Connected Devices Platform Service (Cdpsvc)
GitHub Repo: zero-shot-scfoundation
Microsoft Authenticator
Microsoft Brokering File System
Microsoft Devices Pricing Program
Microsoft Graphics Component
Microsoft Office
Microsoft Office Excel
Microsoft Office SharePoint
.NET
Payment Orchestrator Service
Push Message Routing Service
Role: Windows Hyper-V
SQL Server
System Center Operations Manager
Windows Accessibility Infrastructure (ATBroker.exe)
Windows Ancillary Function Driver for WinSock
Windows App Installer
Windows Authentication Methods
Windows Bluetooth RFCOM Protocol Driver
Windows Device Association Service
Windows DWM Core Library
Windows Extensible File Allocation
Windows File Server
Windows GDI
Windows GDI+
Windows Kerberos
Windows Kernel
Windows MapUrlToZone
Windows Mobile Broadband
Windows NTFS
Windows Performance Counters
Windows Print Spooler Components
Windows Projected File System
Windows Resilient File System (ReFS)
Windows Routing and Remote Access Service (RRAS)
Windows Shell Link Processing
Windows SMB Server
Windows System Image Manager
Windows Telephony Service
Windows Universal Disk Format File System Driver (UDFS)
Windows Win32K
Winlogon

[Recommended Actions]
Microsoft has released remediation updates for the vulnerabilities. Please complete the updates as soon as possible or contact your system maintenance vendor for assistance. For detailed information, please refer to the official Microsoft link:
https://msrc.microsoft.com/update-guide/releaseNote/2026-Mar
[Reference]
https://msrc.microsoft.com/update-guide/releaseNote/2026-Mar
(This notification is for informational purposes only and does not constitute a cybersecurity incident).
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw
Organizer: Computer Center
Click Num: