[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Multiple OWA xss vulnerabilities - MS15-026

ID: oval:org.secpod.oval:def:23751Date: (C)2015-03-11   (M)2024-03-26
Class: PATCHFamily: windows




The host is missing an important security update according to Microsoft security bulletin, MS15-026. The update is required to fix multiple OWA xss vulnerabilities. The flaws are present in the application, which fail to properly sanitize page content in Outlook Web App. Successful exploitation could allow attackers to execute arbitrary code.

Platform:
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Product:
Microsoft Exchange Server 2013
Reference:
MS15-026
CVE-2015-1628
CVE-2015-1629
CVE-2015-1630
CVE-2015-1631
CVE-2015-1632
CVE    5
CVE-2015-1629
CVE-2015-1628
CVE-2015-1632
CVE-2015-1630
...
CPE    4
cpe:/a:microsoft:exchange_server:2013:sp1
cpe:/a:microsoft:exchange_server:2013
cpe:/a:microsoft:exchange_server:2013:cumulative_update_7
cpe:/a:microsoft:exchange_server:2013:cu7
...

© SecPod Technologies