Risk: High
Microsoft identifies four critical issues, three important issues and one moderate issue in July's Patch Tuesday.
All the critical vulnerabilities could allow remote code execution, including vulnerabilities in Embedded Opentype Font Engine, Microsoft DirectShow and the cumulative security updates of Active Kill Bits and Internet Explorer.
Important issues in Virtual PC and Virtual Server could allow elevation of privilege, as well as vulnerabilities in Microsoft ISA Server 2006 and Microsoft Office Publisher, which could allow remote code execution.
Moderate vulnerabilities in Visual Studio Active Template Library could also allow remote code execution.