CVE-2018-8211: Medium severity Microsoft Windows 10 vulnerability
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows 10 Servers, Windows 10. This CVE ID is unique from CVE-2018-8201, CVE-2018-8212, CVE-2018-8215, CVE-2018-8216, CVE-2018-8217, CVE-2018-8221.
Affected Software
Remediation
Event History
Frequently Asked Questions
Who is exposed to this issue?
Systems running Microsoft Windows 10 or Microsoft Windows Server 2016 are identified as affected. The issue concerns Device Guard and a Windows PowerShell session.
What access does an attacker need to exploit it?
The CVSS vector indicates local access, low attack complexity, and low privileges are required. User interaction is not required.
What could successful exploitation allow?
An attacker could bypass a Device Guard security feature and inject malicious code into a Windows PowerShell session. The CVSS rating indicates low impacts to confidentiality, integrity, and availability.
What remediation is available?
A patch is available for this vulnerability.