|
4471
|
9.8
10.0
|
CRITICAL
Network
|
HTTP.sys in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows remote attackers to execute arbitrary code via crafted HTTP request…
|
CWE-94
Code Injection
|
CVE-2015-1635
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2026-04-23 01:42
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4472
|
-
2.1
|
LOW
|
Virtual Machine Manager (VMM) in Hyper-V in Microsoft Windows 8.1 and Windows Server 2012 R2 allows guest OS users to cause a denial of service (VMM functionality loss) via a crafted application, aka…
|
CWE-20
Improper Input Validation
|
CVE-2015-1647
|
cpe:2.3:o:microsoft:windows_server_2012:r2:*
|
|
|
|
|
2024-11-21 11:25
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4473
|
-
9.3
|
HIGH
|
Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allow remote attackers to execute arbitrary code via a crafted Enhanced Metafile (EMF) imag…
|
CWE-94
Code Injection
|
CVE-2015-1645
|
cpe:2.3:o:microsoft:windows_server_2008:r2:sp1
|
|
|
|
|
2024-11-21 11:25
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4474
|
-
7.2
|
HIGH
|
Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not pr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-1644
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2024-11-21 11:25
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4475
|
-
7.2
|
HIGH
|
Microsoft Windows Server 2003 R2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not pro…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-1643
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2024-11-21 11:25
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4476
|
-
5.8
|
MEDIUM
|
Microsoft Active Directory Federation Services (AD FS) 3.0 on Windows Server 2012 R2 does not properly handle logoff actions, which allows remote attackers to bypass intended access restrictions by l…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-1638
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:win…
|
|
|
|
|
2024-11-21 11:25
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4477
|
-
7.2
|
HIGH
|
Task Scheduler in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to gain privileges by triggering application execution by an invalid task, aka "Task Scheduler Elevation of…
|
CWE-264 NVD-CWE-Other
Permissions, Privileges, and Access Controls
|
CVE-2015-0098
|
cpe:2.3:o:microsoft:windows_server_2008:r2:sp1
|
|
|
|
|
2024-11-21 11:22
2015-04-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4478
|
-
9.3
|
HIGH
|
Untrusted search path vulnerability in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2…
|
CWE-426
Untrusted Search Path
|
CVE-2015-0096
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2024-11-21 11:22
2015-03-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4479
|
-
5.6
|
MEDIUM
|
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Window…
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-0095
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2024-11-21 11:22
2015-03-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4480
|
-
2.1
|
LOW
|
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Window…
|
CWE-200
Information Exposure
|
CVE-2015-0094
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2024-11-21 11:22
2015-03-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|