Gravedad: High
  Identificadores de CVE : CVE-2015-1638
  Fecha recomendada: 22 de abril de 2015

  Descripción

This update resolves an information disclosure vulnerability found in Active Directory Federation Services 3.0 in Windows Server 2012. An attacker who successfully exploits this vulnerability may obtain information contained in the browser even if a user has logged off from the system.

  Soluciones

  Software y versión afectados

  • Windows Server 2012 R2
  • Windows Server 2012 R2 (Server Core installation)