CVE-2016-3215 Information
Feb 14, 2021
cve
Description
Microsoft Windows 8.1 Windows Server 2012 Gold and R2 Windows 10 1511 and Microsoft Edge allow remote attackers to obtain sensitive information from process memory via a crafted PDF document aka \Windows PDF Information Disclosure Vulnerability\ a different vulnerability than CVE-2016-3201.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Reference
http://www.securitytracker.com/id/1036099 http://www.zerodayinitiative.com/advisories/ZDI-16-370 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-068 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-080
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.5
Share on: