(MS15-040) Vulnerability in Active Directory Federation Services Could Allow Information Disclosure (3045711)
Data de publicação: 22 abril 2015
Schweregrad: : Alto
Identificador(es) CVE: : CVE-2015-1638
Data do informe: 22 abril 2015
Descrição
This update resolves an information disclosure vulnerability found in Active Directory Federation Services 3.0 in Windows Server 2012. An attacker who successfully exploits this vulnerability may obtain information contained in the browser even if a user has logged off from the system.
Solução
Software infectado e versão:
- Windows Server 2012 R2
- Windows Server 2012 R2 (Server Core installation)