Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft ATM Font Driver Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Adobe Type Manager Font Driver (ATMFD) when it fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. An attacker could then install...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3276 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Installer Service Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in some cases in the Windows Installer service when it improperly runs custom action scripts. An attacker who successfully exploited this vulnerability could elevate privileges on a targeted system. An attacker could then install programs; view, change, or delete...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3251 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Driver Elevation of Privilege Vulnerabilities

Win32k Elevation of Privilege VulnerabilityAn elevation of privilege vulnerability exists due to the way the Windows kernel-mode driver handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3225 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Graphics Component Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Windows graphics component when it fails to properly process bitmap conversions. An authenticated attacker who successfully exploited this vulnerability could elevate privileges on a targeted system. An attacker could then install programs; view, change, or delete data...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3236 Views

RISK: Medium Risk

Medium Risk

Microsoft Netlogon Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Netlogon that is caused when the service improperly establishes a secure communications channel to a primary domain controller (PDC). To successfully exploit this vulnerability, an attacker would first need to have access to a PDC on a target network. ...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3309 Views

RISK: High Risk

High Risk

Microsoft Windows Hyper-V Remote Code Execution Vulnerabilities

Multiple Internet Explorer Information Disclosure VulnerabilitiesA remote code execution vulnerability exists in Windows Hyper-V in a host context if an authenticated and privileged user on a guest virtual machine hosted by Hyper-V runs a specially crafted application. Hyper-V System Data Structure VulnerabilityA remote...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3222 Views

RISK: High Risk

High Risk

Microsoft RDP Remote Code Execution Vulnerability

A remote code execution vulnerability exists in how the Remote Desktop Protocol (RDP) (terminal) service handles packets. While the most likely outcome of this vulnerability is denial of the remote desktop (terminal) service (DOS), remote code execution is possible.
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3353 Views

RISK: High Risk

High Risk

Microsoft VBScript Scripting Engine Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that the VBScript engine, when rendered in Internet Explorer, handles objects in memory. In a web-based attack scenario, an attacker could host a specially crafted website that is designed to exploit this vulnerability through Internet...
Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3265 Views

RISK: Medium Risk

Medium Risk

Oracle WebLogic Server Unauthorized Modification Vulnerability

Two vulnerabilities were identified in Oracle WebLogic. A remote user can modify data on the target system.
Last Update Date: 17 Jul 2015 10:10 Release Date: 17 Jul 2015 3335 Views

RISK: Medium Risk

Medium Risk

Apache Multiple Vulnerabilities

Several vulnerabilities were identified in Apache. A remote user can cause denial of service conditions on the target system. The impact of some vulnerabilities was not specified.
Last Update Date: 17 Jul 2015 10:04 Release Date: 17 Jul 2015 3433 Views