9.3
CVE-2015-6125
- EPSS 29.61%
- Veröffentlicht 09.12.2015 11:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
Use-after-free vulnerability in the DNS server in Microsoft Windows Server 2008 SP2 and R2 SP1 and Server 2012 Gold and R2 allows remote attackers to execute arbitrary code via crafted requests, aka "Windows DNS Use After Free Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows Server 2008 Version - Update sp2
Microsoft ≫ Windows Server 2008 Version r2 Update sp1
Microsoft ≫ Windows Server 2012 Update gold
Microsoft ≫ Windows Server 2012 Version r2 SwEdition datacenter
Microsoft ≫ Windows Server 2012 Version r2 SwEdition essentials
Microsoft ≫ Windows Server 2012 Version r2 SwEdition standard
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 29.61% | 0.98 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.securitytracker.com/id/1034323
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-127