Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

OpenSSL Remote Users Deny Service and Execute Arbitrary Code Vulnerabilities

Multiple vulnerabilities were reported in OpenSSL. A remote user can cause denial of service conditions on the target system. A remote authenticated user may be able to execute arbitrary code on the target system. A remote authenticated user can send specially crafted application data to a connected...
Last Update Date: 12 Jun 2015 10:35 Release Date: 12 Jun 2015 3714 Views

RISK: High Risk

High Risk

VMware Products Multiple Vulnerabilities

Multiple vulnerabilites were identitfied in VMware Workstation, Player, Fusion and Horizon View Client, which may cause code execution and Denial of Service.
Last Update Date: 11 Jun 2015 09:45 Release Date: 11 Jun 2015 3401 Views

RISK: Medium Risk

Medium Risk

Cisco Catalyst 6500 Series Switches Denial of Service Vulnerability

A vulnerability was identified in Cisco Catalyst 6500 Series Switches, which could allow an authenticated, remote attacker to cause a denial of service condition. NOTE: There is no patch available for this vulnerability.
Last Update Date: 11 Jun 2015 09:45 Release Date: 11 Jun 2015 3343 Views

RISK: Medium Risk

Medium Risk

IBM Notes and Domino Multiple vulnerabilities

Multiple vulnerabilities were identified in IBM SDK Java Technology Edition, Version 6 SR16FP3 IF1 that is used by IBM Notes and Domino. Remote attackers can exploit the vulnerabilities to execute arbitrary code, cause elevation of privilege and denial of service.
Last Update Date: 10 Jun 2015 09:58 Release Date: 10 Jun 2015 3308 Views

RISK: High Risk

High Risk

Adobe Flash Player Multiple Vulnerabilities

Multiple vulnerabilities were reported in Adobe Flash Player. A remote user can execute arbitrary code, obtain potentially sensitive information, and bypass security controls on the target system.
Last Update Date: 10 Jun 2015 09:56 Release Date: 10 Jun 2015 3235 Views

RISK: Medium Risk

Medium Risk

Microsoft Exchange Server Elevation of Privilege Vulnerabilities

An information disclosure vulnerability exists in Microsoft Exchange web applications when Exchange does not properly manage same-origin policy. An attacker could exploit this Server-Side Request Forgery (SSRF) vulnerability by using a specially crafted web application request.
Last Update Date: 10 Jun 2015 09:55 Release Date: 10 Jun 2015 3374 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Microsoft Windows LoadLibrary when it fails to properly validate user input. An authenticated attacker who successfully exploited this vulnerability could elevate privileges on a targeted system. An attacker could then install programs; view, change, or delete data; ...
Last Update Date: 10 Jun 2015 09:54 Release Date: 10 Jun 2015 3288 Views

RISK: Medium Risk

Medium Risk

Microsoft Active Directory Federation Services Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the way that URLs are sanitized in Active Directory Federation Services (AD FS). An attacker who successfully exploited this vulnerability could perform cross-site scripting attacks and run script in the security context of the logged-on user.
Last Update Date: 10 Jun 2015 09:53 Release Date: 10 Jun 2015 3249 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Elevation of Privilege Vulnerabilities

Microsoft Windows Kernel Information Disclosure VulnerabilityAn information disclosure vulnerability exists when the Windows kernel-mode driver improperly handles buffer elements under certain conditions, allowing an attacker to request the contents of specific memory addresses. An attacker who successfully exploited this vulnerability could then potentially read data that...
Last Update Date: 10 Jun 2015 09:52 Release Date: 10 Jun 2015 3273 Views

RISK: High Risk

High Risk

Microsoft Common Controls Remote Code Execution Vulnerability

A remote code execution vulnerability exists in Microsoft Common Controls when it accesses an object in memory that has not been correctly initialized or has been deleted. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user. ...
Last Update Date: 10 Jun 2015 09:51 Release Date: 10 Jun 2015 3241 Views