Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.902811
Categoría:Windows : Microsoft Bulletins
Título:Microsoft .NET Framework and Microsoft Silverlight Remote Code Execution Vulnerabilities (2651026)
Resumen:This host is missing a critical security update according to; Microsoft Bulletin MS12-016.
Descripción:Summary:
This host is missing a critical security update according to
Microsoft Bulletin MS12-016.

Vulnerability Insight:
Multiple flaws are due to

- An unspecified error when handling un-managed objects can be exploited via
a specially crafted XAML Browser Application (XBAP).

- An error when calculating certain buffer lengths can be exploited to corrupt
memory via a specially crafted XAML Browser Application (XBAP).

Vulnerability Impact:
Successful exploitation could allow attacker to execute arbitrary code within
the context of the affected application. Failed exploit attempts will likely
result in a denial-of-service condition.

Affected Software/OS:
- Microsoft Silverlight 4.0

- Microsoft .NET Framework 4.0

- Microsoft .NET Framework 3.5.1

- Microsoft .NET Framework 2.0 Service Pack 2

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2012-0014
Cert/CC Advisory: TA12-045A
http://www.us-cert.gov/cas/techalerts/TA12-045A.html
Microsoft Security Bulletin: MS12-016
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-016
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13972
Common Vulnerability Exposure (CVE) ID: CVE-2012-0015
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14513
CopyrightCopyright (C) 2012 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.