CVE Vulnerabilities

CVE-2015-2471

Published: Aug 15, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Microsoft XML Core Services 3.0, 5.0, and 6.0 supports SSL 2.0, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by sniffing the network and conducting a decryption attack, aka MSXML Information Disclosure Vulnerability, a different vulnerability than CVE-2015-2434.

Affected Software

NameVendorStart VersionEnd Version
Xml_core_servicesMicrosoft3.0 (including)3.0 (including)
Xml_core_servicesMicrosoft5.0 (including)5.0 (including)
Xml_core_servicesMicrosoft6.0 (including)6.0 (including)

References