cbcvebase.
CVE-2015-2471
published 2015-08-15

CVE-2015-2471: Microsoft XML Core Services 3.0, 5.0, and 6.0 supports SSL 2.0, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by…

PriorityP425medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
15.54%
96.4th percentile
Microsoft XML Core Services 3.0, 5.0, and 6.0 supports SSL 2.0, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by sniffing the network and conducting a decryption attack, aka "MSXML Information Disclosure Vulnerability," a different vulnerability than CVE-2015-2434.

Affected

3 ranges
VendorProductVersion rangeFixed in
microsoftxml_core_services
microsoftxml_core_services
microsoftxml_core_services
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.