Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.810925
Category:Windows : Microsoft Bulletins
Title:Microsoft Privilege Elevation And Information Disclosure Vulnerabilities (KB4015195)
Summary:This host is missing an important security; update according to Microsoft security update KB4015195.
Description:Summary:
This host is missing an important security
update according to Microsoft security update KB4015195.

Vulnerability Insight:
Multiple flaws are due to:

- The win32k component improperly provides kernel information.

- The Microsoft Graphics Component fails to properly handle objects in memory.

Vulnerability Impact:
Successful exploitation will allow an attacker
to run arbitrary code in kernel mode. An attacker could then install programs.
View, change, or delete data, or create new accounts with full user rights and
obtain information to further compromise the users system.

Affected Software/OS:
- Microsoft Windows Vista x32/x64 Edition Service Pack 2

- Microsoft Windows Server 2008 x32/x64 Edition Service Pack 2

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
6.9

CVSS Vector:
AV:L/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-0058
BugTraq ID: 97462
http://www.securityfocus.com/bid/97462
https://www.exploit-db.com/exploits/41879/
http://www.securitytracker.com/id/1038239
Common Vulnerability Exposure (CVE) ID: CVE-2017-0155
BugTraq ID: 97471
http://www.securityfocus.com/bid/97471
http://www.securitytracker.com/id/1038237
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.