First published: Wed Jul 11 2018(Updated: )
A security feature bypass vulnerability exists when Microsoft Internet Explorer improperly handles requests involving UNC resources, aka "Internet Explorer Security Feature Bypass Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =10 | |
Microsoft Windows Server | ||
Internet Explorer | =11 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1703 | |
Microsoft Windows 10 | =1709 | |
Microsoft Windows 10 | =1803 | |
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 8.1 | ||
Microsoft Windows RT | ||
Microsoft Windows Server | =r2-sp1 | |
Microsoft Windows Server | =r2 | |
Microsoft Windows Server 2016 | ||
Internet Explorer | =9 | |
Microsoft Windows Server | =sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0949 is classified as a security feature bypass vulnerability.
To mitigate CVE-2018-0949, users should apply the latest security updates from Microsoft for Internet Explorer.
CVE-2018-0949 affects Internet Explorer 9, 10, and 11.
Yes, CVE-2018-0949 can potentially be exploited remotely through crafted web content.
CVE-2018-0949 may allow attackers to bypass security measures in Internet Explorer, potentially leading to unauthorized access.