CVE-2015-6115: Microsoft .NET Framework
Medium severity, CVSS 4.3. EPSS: 13.5% chance of exploitation in the next 30 days.
Microsoft .NET Framework 2.0 SP2, 3.5, and 3.5.1 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka ".NET ASLR Bypass."
Affected products
- Microsoft .NET Framework: version 2.0 only; version 3.5 only; version 3.5.1 only
Published 2015-11-11. Last modified 2026-06-17.