1.9
CVE-2015-0001
- EPSS 2.59%
- Veröffentlicht 13.01.2015 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
The Windows Error Reporting (WER) component in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to bypass the Protected Process Light protection mechanism and read the contents of arbitrary process-memory locations by leveraging administrative privileges, aka "Windows Error Reporting Security Feature Bypass Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 8.1 Version -
Microsoft ≫ Windows Rt Version - Update gold
Microsoft ≫ Windows Rt 8.1 Version -
Microsoft ≫ Windows Server 2012 Version - Update gold
Microsoft ≫ Windows Server 2012 Version r2 SwPlatform x64
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.59% | 0.832 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 1.9 | 3.4 | 2.9 |
AV:L/AC:M/Au:N/C:P/I:N/A:N
|
http://packetstormsecurity.com/files/134392/Microsoft-Windows-8.1-Ahcache.sys-NtApphelpCacheControl-Privilege-Escalation.html
http://secunia.com/advisories/62134
http://www.securityfocus.com/bid/71927
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-006
https://exchange.xforce.ibmcloud.com/vulnerabilities/99513
https://exchange.xforce.ibmcloud.com/vulnerabilities/99514