Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft .NET Framework Elevation of Privilege Vulnerabilities

.NET XML Decryption Denial of Service VulnerabilityA denial of service vulnerability exists in Microsoft .NET Framework that could allow an unauthenticated attacker to degrade the performance of a .NET-enabled website and disrupt the availability of applications that use Microsoft .NET Framework. The vulnerability...
Last Update Date: 13 May 2015 14:41 Release Date: 13 May 2015 4048 Views

RISK: Medium Risk

Medium Risk

Microsoft Silverlight Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in Microsoft Silverlight that is caused when Silverlight improperly allows applications that are intended to run at a low integrity level (very limited permissions) to be executed at a medium integrity level (permissions of the current user) or higher. ...
Last Update Date: 13 May 2015 14:41 Release Date: 13 May 2015 4003 Views

RISK: Medium Risk

Medium Risk

Microsoft Service Control Manager Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Windows Service Control Manager (SCM) when the SCM improperly verifies impersonation levels. An attacker who successfully exploited this vulnerability could gain elevated privileges and make calls to SCM for which they lack sufficient privilege. The update addresses the...
Last Update Date: 13 May 2015 14:40 Release Date: 13 May 2015 4143 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Elevation of Privilege Vulnerabilities

Multiple Microsoft Windows Kernel Memory Disclosure VulnerabilitiesInformation disclosure vulnerabilities exist when the Windows kernel-mode driver leaks private address information during a function call, which could allow the disclosure of kernel memory contents revealing information about the system to an attacker. The information disclosure vulnerabilities by themselves...
Last Update Date: 13 May 2015 14:37 Release Date: 13 May 2015 4074 Views

RISK: Medium Risk

Medium Risk

Microsoft Kernel Security Feature Bypass Vulnerability

A security feature bypass vulnerability exists when the Windows kernel fails to properly validate a memory address, allowing an attacker to retrieve information that could lead to a Kernel Address Space Layout Randomization (KASLR) bypass. An attacker who successfully exploited this vulnerability...
Last Update Date: 13 May 2015 14:37 Release Date: 13 May 2015 3837 Views

RISK: Medium Risk

Medium Risk

Microsoft JScript and VBScript Scripting Engines Security Feature Bypass Vulnerabilities

VBScript ASLR BypassA security feature bypass exists when the VBScript engine fails to use the Address Space Layout Randomization (ASLR) security feature, allowing an attacker to more reliably predict the memory offsets of specific instructions in a given call stack. The security feature bypass by itself...
Last Update Date: 13 May 2015 14:36 Release Date: 13 May 2015 4040 Views

RISK: Medium Risk

Medium Risk

Microsoft Management Console File Format Denial of Service Vulnerability

A denial of service vulnerability exists when Windows attempts to access a specially crafted .msc file to retrieve the icon information, and then fails to properly validate a destination buffer, resulting in a denial of service. An unauthenticated attacker could exploit this ...
Last Update Date: 13 May 2015 14:36 Release Date: 13 May 2015 3936 Views

RISK: High Risk

High Risk

Adobe Reader and Acrobat Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Reader and Acrobat, which can be exploited by remote attacker to execute arbitrary code, bypass security restriction, cause denial of service condition, and disclose sensitive information.
Last Update Date: 13 May 2015 09:37 Release Date: 13 May 2015 4179 Views

RISK: High Risk

High Risk

Adobe Flash Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Flash Player, which can be exploited by remote attacker to run arbitrary code, bypass security restriction and disclose sensitive information.
Last Update Date: 13 May 2015 09:37 Release Date: 13 May 2015 4029 Views

RISK: High Risk

High Risk

Mozilla Firefox and Thunderbird Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox, Firefox ESR and Thunderbird. Remote attacker can exploit the vulnerabilities to cause denial of service and sensitive information disclosure.
Last Update Date: 13 May 2015 09:37 Release Date: 13 May 2015 4124 Views