ms14-076: vulnerability in internet information services (iis) could allow security feature bypass: november 11, 2014 for Windows Server 2012 R2 (KB2982998)

Risk Information

Base Score
9.1
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
13.454%

CVE Information

Source CVE
CVE-2014-4078

Associated CVE
CVE-2014-4078

Patch Details

Patch associated with this vulnerability is supported by ManageEngine.

Patch ID
16522

Patch Description
Security Update for Windows Server 2012 R2 (KB2982998)

References

http://technet.microsoft.com/security/bulletin/MS14-076
http://www.securityfocus.com/bid/70937
http://www.securitytracker.com/id/1031194