Microsoft Fixes Power Pages Vulnerability Found by Digia and Monti
Digia and Monti identified a vulnerability in Microsoft Power Pages, which Microsoft has now globally fixed. The discovery was made during a Digia project with Monti as cybersecurity partner.

Software and services company Digia and cybersecurity firm Monti have identified a significant vulnerability in Microsoft's Power Pages solution. Microsoft has now released a global fix, addressing the issue for all users.
The vulnerability was discovered during one of Digia's delivery projects, where Monti served as the cybersecurity partner. The experts developed and implemented a patch, enabling the system's safe use during the project. The finding was promptly reported to Microsoft.
"In the worst-case scenario, the vulnerability could have allowed an attacker to execute malicious code in the system user's browser. However, exploiting it would have required bypassing multiple protections," stated Lauri Vehviläinen, Senior Security Expert at Monti.
Microsoft awarded Digia and Monti a $3,000 Bug Bounty reward for the discovery. The companies have donated the reward to Mieli Mental Health Finland to support youth mental health initiatives.
Tarmo Karppinen, Chief Security Officer at Digia, emphasized the importance of thorough testing and collaboration in cybersecurity. "Information systems are built through the collaboration of different actors, so cybersecurity must be ensured throughout the entire chain," he noted.