← Back

CVE-2015-2471

nvd nist
Published: Aug 15, 2015Modified: May 6, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:P/I:N/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Microsoft XML Core Services 3.0, 5.0, and 6.0 supports SSL 2.0, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by sniffing the network and conducting a decryption attack, aka "MSXML Information Disclosure Vulnerability," a different vulnerability than CVE-2015-2434.

Affected (3)

1 product
Xml Core Services
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 3.0
Version 5.0
Version 6.0

Related CWEs

Timeline

No history available yet.