CVE-2016-0152 | Microsoft IIS 7.0/7.5 on Vista/Server 2008 DLL Loader access control (MS16-058 / Nessus ID 91008)
A vulnerability classified as critical was found in Microsoft IIS 7.0/7.5 on Vista/Server 2008. Affected by this vulnerability is an unknown functionality of the component DLL Loader. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2016-0152. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.