Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Windows Hyper-V bypass security restriction Vulnerability

A security feature bypass vulnerability exists in Windows Hyper-V when access control list (ACL) configuration settings are not applied correctly. To exploit the vulnerability, an attacker could run a specially crafted application that could cause Hyper-V to allow ...
Last Update Date: 9 Sep 2015 16:42 Release Date: 9 Sep 2015 3282 Views

RISK: Medium Risk

Medium Risk

Microsoft Skype for Business Server and Lync Server Multiple Vulnerabilities

1. A cross-site scripting (XSS) vulnerability, which could result in information disclosure, exists when the jQuery engine in Skype for Business Server or in Lync Server fails to properly sanitize specially crafted content. An attacker who successfully exploited this...
Last Update Date: 9 Sep 2015 16:42 Release Date: 9 Sep 2015 3455 Views

RISK: Medium Risk

Medium Risk

Microsoft Exchange Server Multiple Vulnerabilities

1. An information disclosure vulnerability exists in Microsoft Exchange Server when Outlook Web Access (OWA) fails to properly handle web requests. An attacker who successfully exploited the vulnerability could discover stacktrace details. To exploit the vulnerability, an attacker would have to...
Last Update Date: 9 Sep 2015 16:33 Release Date: 9 Sep 2015 3179 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Task Management Multiple Vulnerabilities

1. An elevation of privilege vulnerability exists when Microsoft Windows fails to properly validate and enforce impersonation levels. An attacker who successfully exploited this vulnerability could bypass impersonation-level security checks and gain elevated privileges on a targeted system. To exploit the...
Last Update Date: 9 Sep 2015 16:32 Release Date: 9 Sep 2015 3217 Views

RISK: Medium Risk

Medium Risk

Microsoft .NET Framework Multiple Vulnerabilities

1. An elevation of privilege vulnerability exists in the way that the .NET Framework validates the number of objects in memory before copying those objects into an array. An attacker who successfully exploited this vulnerability could take control of an affected system. An attacker...
Last Update Date: 9 Sep 2015 16:32 Release Date: 9 Sep 2015 3151 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Media Center Vulnerability

A vulnerability exists in Windows Media Center that could allow remote code execution if Windows Media Center opens a specially crafted Media Center link (.mcl) file that references malicious code. An attacker who successfully exploited this vulnerability could gain the same user rights...
Last Update Date: 9 Sep 2015 15:41 Release Date: 9 Sep 2015 3114 Views

RISK: Medium Risk

Medium Risk

Microsoft Office Multiple Vulnerabilities

1.A cross-site scripting (XSS) vulnerability, which could result in spoofing, exists when SharePoint fails to properly sanitize user-supplied web requests. An attacker who successfully exploited this vulnerability could perform persistent cross-site scripting attacks and...
Last Update Date: 9 Sep 2015 15:41 Release Date: 9 Sep 2015 3106 Views

RISK: High Risk

High Risk

Microsoft Windows Journal Multiple Vulnerabilities

A denial of service vulnerability exists in Windows Journal when a specially crafted Journal file is opened in Windows Journal. An attacker who successfully exploited this vulnerability could cause data loss on the target system. Note that the denial of service would not allow an...
Last Update Date: 9 Sep 2015 15:06 Release Date: 9 Sep 2015 3052 Views

RISK: High Risk

High Risk

Microsoft Graphics Component Multiple Vulnerabilities

Multiple Vulnerabilities have been identified in the Microsoft Graphics Component. A Remote user can expolit vulnerabilities to allow Remote Code Execution on the targeted system. Win32k Elevation of Privilege VulnerabilityKernel ASLR Bypass Vulnerability
Last Update Date: 9 Sep 2015 15:06 Release Date: 9 Sep 2015 2996 Views

RISK: Medium Risk

Medium Risk

Microsoft Active Directory Service Denial of Service Vulnerability

A vulnerability has been identified in the Microsoft Active Directory. A Remote user can expolit vulnerability to allow denial of service on the targeted system.
Last Update Date: 9 Sep 2015 14:42 Release Date: 9 Sep 2015 3000 Views