CVE-2017-8715: Medium severity Microsoft Windows 10 vulnerability
Published Oct 13, 2017
·Updated
The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security feature bypass by the way it handles Windows PowerShell sessions, aka "Windows Security Feature Bypass".
Affected Software
5 affected components
Microsoft Windows 10
Microsoft Windows 10=1511
Microsoft Windows 10=1607
Microsoft Windows 10=1703
Microsoft Windows Server 2016
Remediation
Event History
Oct 13, 2017
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The CVSS vector indicates local access and low privileges are required. No user interaction is required.
2
Which systems are identified as affected?
Affected systems include Windows 10 Gold, version 1511, version 1607, and version 1703, as well as Windows Server 2016, where Microsoft Device Guard is in use.
3
Is a fix available?
Yes. A patch is available.