Latest CVE Feed
-
7.2
HIGHCVE-2015-2508
The Adobe Type Manager Library in Microsoft Windows 10 allows local users to gain privileges via a crafted application, aka "Font Driver Elevation of Privilege Vulnerability."... Read more
Affected Products : windows_10- EPSS Score: %5.12
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2015-2507
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a ... Read more
- EPSS Score: %7.69
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2506
atmfd.dll in the Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows remote attackers to caus... Read more
- EPSS Score: %23.43
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2015-2505
Outlook Web Access (OWA) in Microsoft Exchange Server 2013 Cumulative Update 8 and 9 and SP1 allows remote attackers to obtain sensitive stacktrace information via a crafted request, aka "Exchange Information Disclosure Vulnerability."... Read more
Affected Products : exchange_server- EPSS Score: %16.46
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2504
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, and 4.6 improperly counts objects before performing an array copy, which allows remote attackers to (1) execute arbitrary code via a crafted XAML browser application (XBAP) or (2) bypass ... Read more
Affected Products : .net_framework- EPSS Score: %25.80
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2501
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability."... Read more
Affected Products : internet_explorer- EPSS Score: %14.83
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2500
Microsoft Internet Explorer 7 and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability."... Read more
Affected Products : internet_explorer- EPSS Score: %14.83
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2499
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-20... Read more
Affected Products : internet_explorer- EPSS Score: %12.67
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2498
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-20... Read more
Affected Products : internet_explorer- EPSS Score: %12.67
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2494
Microsoft Internet Explorer 7 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE... Read more
- EPSS Score: %14.83
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2493
The (1) VBScript and (2) JScript engines in Microsoft Internet Explorer 8 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability."... Read more
Affected Products : internet_explorer- EPSS Score: %20.84
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2492
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-20... Read more
Affected Products : internet_explorer- EPSS Score: %20.84
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2491
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2485 and CVE... Read more
Affected Products : internet_explorer- EPSS Score: %20.84
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2490
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-20... Read more
Affected Products : internet_explorer- EPSS Score: %20.84
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2015-2489
Microsoft Internet Explorer 11 allows remote attackers to gain privileges via a crafted web site, as demonstrated by a transition from Low Integrity to Medium Integrity, aka "Elevation of Privilege Vulnerability."... Read more
Affected Products : internet_explorer- EPSS Score: %8.73
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2487
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-20... Read more
Affected Products : internet_explorer- EPSS Score: %20.84
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2486
Microsoft Internet Explorer 7 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE... Read more
- EPSS Score: %14.83
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-2485
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE... Read more
- EPSS Score: %14.83
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
6.4
MEDIUMCVE-2015-2484
Microsoft Internet Explorer 10 and 11 uses an incorrect flag during certain filesystem accesses, which allows remote attackers to delete arbitrary files via unspecified vectors, aka "Tampering Vulnerability."... Read more
Affected Products : internet_explorer- EPSS Score: %21.02
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2015-2483
Microsoft Internet Explorer 10 and 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Information Disclosure Vulnerability."... Read more
Affected Products : internet_explorer- EPSS Score: %21.15
- Published: Sep. 09, 2015
- Modified: Apr. 12, 2025