2.1
CVSSv2

CVE-2015-1678

Published: 13/05/2015 Updated: 13/05/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerability," a different vulnerability than CVE-2015-1676, CVE-2015-1677, CVE-2015-1679, and CVE-2015-1680.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 8 -

microsoft windows server 2008 r2

microsoft windows 7 -

microsoft windows server 2012 -

microsoft windows 8.1 -

microsoft windows server 2008 -

microsoft windows server 2003 -

microsoft windows rt -

microsoft windows rt 8.1 -

microsoft windows server 2012 r2

microsoft windows vista -

Exploits

# Source: githubcom/hfiref0x/CVE-2015-1701 Win32k LPE vulnerability used in APT attack Original info: wwwfireeyecom/blog/threat-research/2015/04/probable_apt28_useohtml Credits R136a1 / hfiref0x ## Compiled EXE: ### x86 + githubcom/hfiref0x/CVE-2015-1701/raw/master/Compiled/Taihou32exe + Exploit-DB Mirror: https: ...