Summary
Secunia Research has rejected Microsoft advisory MS15-075 (CVE-2015-2416 and CVE-2015-2417)
Synopsis
Microsoft advisory MS15-075 (CVE-2015-2416 and CVE-2015-2417) is not covered within a Secunia Advisory.
References:
https://technet.microsoft.com/en-us/library/security/MS15-075
Reasons:
Both issues (CVE-2015-2416 and CVE-2015-2417) are rejected due to requiring another vulnerability.
Discussion
Reason for Rating:
The outlined exploitation scenario requires a further vulnerability, for example a vulnerability in Internet Explorer, to allow the execution of arbitrary code to finally utilize the privilege gain from limited privileges to a medium integrity level (permissions of the current user). As another vulnerability is required, this is considered a hardening mechanism in this specific context.