cbcvebase.
CVE-2015-2434
published 2015-08-15

CVE-2015-2434: Microsoft XML Core Services 3.0 and 5.0 supports SSL 2.0, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by sniffing…

PriorityP425medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
15.54%
96.4th percentile
Microsoft XML Core Services 3.0 and 5.0 supports SSL 2.0, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by sniffing the network and conducting a decryption attack, aka "MSXML Information Disclosure Vulnerability," a different vulnerability than CVE-2015-2471.

Affected

3 ranges
VendorProductVersion rangeFixed in
microsoftxml_core_services
microsoftxml_core_services
microsoftxml_core_services
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.