CVE-2018-1039: High severity microsoft .net framework 4 vulnerability
A security feature bypass vulnerability exists in .Net Framework which could allow an attacker to bypass Device Guard, aka ".NET Framework Device Guard Security Feature Bypass Vulnerability." This affects Microsoft .NET Framework 4.7.1, Microsoft .NET Framework 4.6, Microsoft .NET Framework 3.5, Microsoft .NET Framework 4.7/4.7.1, Microsoft .NET Framework 3.0, Microsoft .NET Framework 3.5.1, Microsoft .NET Framework 4.5.2, Microsoft .NET Framework 4.6.2/4.7/4.7.1, Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1, Microsoft .NET Framework 2.0, Microsoft .NET Framework 4.6/4.6.1/4.6.2.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1039?
CVE-2018-1039 has a severity rating of 'Important' as it allows for bypassing of security features.
How do I fix CVE-2018-1039?
To fix CVE-2018-1039, update the affected .NET Framework versions to the latest available version provided by Microsoft.
Which software versions are affected by CVE-2018-1039?
CVE-2018-1039 affects Microsoft .NET Framework 4.7.1, 4.6, 3.5, and earlier versions.
Can CVE-2018-1039 be exploited remotely?
CVE-2018-1039 can potentially be exploited remotely if a vulnerable application is running.
What is the impact of exploiting CVE-2018-1039?
Exploiting CVE-2018-1039 allows attackers to bypass Device Guard, potentially leading to unauthorized access to sensitive data.