1.9

CVE-2015-0001

The Windows Error Reporting (WER) component in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to bypass the Protected Process Light protection mechanism and read the contents of arbitrary process-memory locations by leveraging administrative privileges, aka "Windows Error Reporting Security Feature Bypass Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 8 Version -
Microsoft ≫ Windows 8.1 Version -
Microsoft ≫ Windows Rt Version - Update gold
Microsoft ≫ Windows Rt 8.1 Version -
Microsoft ≫ Windows Server 2012 Version - Update gold
Microsoft ≫ Windows Server 2012 Version r2 SwPlatform x64
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.59% 0.832
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 1.9 3.4 2.9
AV:L/AC:M/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://packetstormsecurity.com/files/134392/Microsoft-Windows-8.1-Ahcache.sys-NtApphelpCacheControl-Privilege-Escalation.html
http://secunia.com/advisories/62134
http://www.securityfocus.com/bid/71927
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-006
https://exchange.xforce.ibmcloud.com/vulnerabilities/99513
https://exchange.xforce.ibmcloud.com/vulnerabilities/99514