Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Adobe Type Manager Privilege Escalation Vulnerability

A vulnerability has been identified in Adobe Type Manager module, which can allow an attacker to obtain SYSTEM privileges on an affected Windows system.   Note: Vendor patch is currently unavailable.
Last Update Date: 5 Aug 2015 Release Date: 9 Jul 2015 4210 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Flash Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Flash Player. A remote user can cause arbitrary code to be executed, bypass security controls, and obtain potentially sensitive information on the target system.   Note: Vulnerability CVE-2015-5119 is being exploited in the wild.
Last Update Date: 5 Aug 2015 Release Date: 9 Jul 2015 4523 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Cumulative Security Update

VBScript Memory Corruption VulnerabilityA remote code execution vulnerability exists in the way that the VBScript engine, when rendered in Internet Explorer, handles objects in memory. In a web-based attack scenario, an attacker could host a specially crafted website that is designed to exploit this...
Last Update Date: 3 Aug 2015 Release Date: 15 Jul 2015 4232 Views

RISK: Medium Risk

Medium Risk

BIOS Implementations Multiple Vulnerabilities

Multiple BIOS implementations fail to properly set write protections after waking from sleep, leading to the possibility of an arbitrary BIOS image reflash.
Last Update Date: 31 Jul 2015 10:39 Release Date: 31 Jul 2015 4424 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Mobile Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Internet Explorer Mobile. which can be exploited by remote attackers to execute arbitrary code on the target user's system. A remote user can create specially crafted content that, when loaded by the target user, will execute arbitrary code...
Last Update Date: 31 Jul 2015 Release Date: 27 Jul 2015 4162 Views

RISK: Medium Risk

Medium Risk

Cisco ASR 1000 Series Routers Denial of Service Vulnerability

A vulnerability was identified in Cisco ASR 1000 series routers. A remote user can cause the target device to reload.
Last Update Date: 31 Jul 2015 10:34 Release Date: 31 Jul 2015 4143 Views

RISK: High Risk

High Risk

Microsoft SQL Server Remote Code Execution Vulnerabilities

SQL Server Elevation of Privilege Vulnerability An elevation of privilege vulnerability exists in Microsoft SQL Server when it improperly casts pointers to an incorrect class. An attacker could exploit the vulnerability if their credentials allow access to an affected SQL server database. An attacker who successfully exploited...
Last Update Date: 31 Jul 2015 Release Date: 15 Jul 2015 7345 Views

RISK: Extremely High Risk

Extremely High Risk

Android Stagefright Media Library Remote Code Execution Vulnerabilities

Multiple vulnerabilities have been identified in Android Stagefright Media Library. By sending crafted MMS or media files to target system, remote attackers can exploit the vulnerabilities by to execute arbitrary code on the target system.   Note: Proof of concept or exploit code may be available in...
Last Update Date: 29 Jul 2015 11:09 Release Date: 29 Jul 2015 6851 Views

RISK: Medium Risk

Medium Risk

Microsoft OLE Elevation of Privilege Vulnerabilities

Elevation of privilege vulnerabilities exists in Microsoft Windows OLE when it fails to properly validate user input. The vulnerabilities by themselves do not allow arbitrary code to be run. The vulnerabilities would have to be used in conjunction with another vulnerability that allows remote code execution. An...
Last Update Date: 28 Jul 2015 Release Date: 15 Jul 2015 4162 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by remote attackers to execute arbitrary code, bypass security controls, obtain potentially sensitive information, spoof URLs and conduct cross-site scripting attacks.
Last Update Date: 24 Jul 2015 Release Date: 23 Jul 2015 4112 Views