CVE-2015-2460
35Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 31%
from disclosure to weapon6 days
Published on NVDAug 15
1st PoC+6d
exploitation probability
31%top 2% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, and 4.6 allows remote attackers to execute arbitrary code via a crafted OpenType font, aka "OpenType Font Parsing Vulnerability."
Affected products
n/a · n/apublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/37921/unverifiedexploitdbwww.exploit-db.com/exploits/37921unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.