Permissions, Privileges, and Access Controls in Microsoft .NET Framework - CVE-2015-1673
Published: February 23, 2026
Vulnerability identifier: #VU123139
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2015-1673
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to application does not properly impose security restrictions. A remote attacker can trigger the vulnerability to bypass security restrictions and escalate privileges on the system.
Affected software
Microsoft .NET Framework
IBM Cognos Controller
IBM Cognos Controller
How to mitigate CVE-2015-1673
Install updates from vendor's website.
IBM Cognos Controller - update to 11.1.2