Skip to main content

Security Bulletin

Filter by:

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Remote Code Execution Vulnerability

A vulnerability was identified in Adobe Flash Player. A remote user can cause arbitrary code to be executed on the target user's system. Note: This vulnerability is being actively exploited in the wild.
Last Update Date: 13 May 2016 Release Date: 11 May 2016 3508 Views

RISK: Medium Risk

Medium Risk

Adobe ColdFusion Multiple Vulnerability

 Multiple vulnerabilities were identified in Adobe ColdFusion. A remote user can bypass security controls on the target system. A remote user can conduct cross-site scripting attacks.
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3178 Views

RISK: High Risk

High Risk

Adobe Acrobat and Reader Multiple Vulnerabilities

 Multiple vulnerabilities were identified in Adobe Acrobat and Reader. A remote user can cause arbitrary code to be executed on the target user's system. A remote user can bypass security controls on the target system. A remote user can obtain potentially sensitive information on...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3510 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows RDP Information Disclosure Vulnerability

An information disclosure vulnerability exists in Microsoft Windows when a USB disk mounted over Remote Desktop Protocol (RDP) via Microsoft RemoteFX is not correctly tied to the session of the mounting user. An attacker who successfully exploited this vulnerability could obtain access to file and directory information...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3607 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Hypervisor Security Feature Bypass Vulnerability

A security feature bypass vulnerability exists when Windows incorrectly allows certain kernel-mode pages to be marked as Read, Write, Execute (RWX) even with Hypervisor Code Integrity (HVCI) enabled.   To exploit this vulnerability, an attacker could run a specially crafted application...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3499 Views

RISK: Medium Risk

Medium Risk

Microsoft .NET Framework TLS/SSL Information Disclosure Vulnerability

An information disclosure vulnerability exists in the TLS/SSL protocol, implemented in the encryption component of Microsoft .NET Framework. An attacker who successfully exploited this vulnerability could decrypt encrypted SSL/TLS traffic.   To exploit the vulnerability, an attacker would first have to inject...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3372 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Multiple Vulnerabilities

Multiple elevation of privilege vulnerabilities exist in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited the vulnerabilities could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3226 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows RPC Elevation of Privilege Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Windows handles specially crafted Remote Procedure Call (RPC) requests. The remote code execution can occur when the RPC Network Data Representation (NDR) Engine improperly frees memory. An authenticated attacker who successfully exploited this...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3522 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Microsoft Windows when the Windows kernel fails to properly handle parsing of certain symbolic links. An attacker who successfully exploited this vulnerability could potentially access privileged registry keys and thereby elevate permissions. An attacker could then install programs; view, ...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3117 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Media Center Remote Code Execution Vulnerability

A vulnerability exists in Windows Media Center that could allow remote code execution if Windows Media Center opens a specially crafted Media Center link (.mcl) file that references malicious code. An attacker who successfully exploited this vulnerability could take control of an affected system. Customers whose...
Last Update Date: 12 May 2016 Release Date: 11 May 2016 3177 Views