CVE-2015-1638 Information
Feb 14, 2021
cve
Description
Microsoft Active Directory Federation Services (AD FS) 3.0 on Windows Server 2012 R2 does not properly handle logoff actions which allows remote attackers to bypass intended access restrictions by leveraging an unattended workstation aka \Active Directory Federation Services Information Disclosure Vulnerability.\
Reference
http://www.securitytracker.com/id/1032115 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-040
Share on: