Microsoft Silverlight Elevation of Privilege Vulnerability
RISK: Medium Risk
TYPE: Operating Systems - Windows OS
An elevation of privilege vulnerability exists in Microsoft Silverlight that is caused when Silverlight improperly allows applications that are intended to run at a low integrity level (very limited permissions) to be executed at a medium integrity level (permissions of the current user) or higher. To exploit this vulnerability an attacker would first have to log on to the system or convince a logged on user to execute a specially crafted Silverlight application.
Impact
- Elevation of Privilege
System / Technologies affected
- Microsoft Silverlight 5
- Microsoft Silverlight 5 Developer Runtime
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
https://technet.microsoft.com/en-us/library/security/MS15-049
Vulnerability Identifier
Source
Related Link
Share with