CVE-2018-8221: Medium severity Microsoft Windows 10 vulnerability
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8201, CVE-2018-8211, CVE-2018-8212, CVE-2018-8215, CVE-2018-8216, CVE-2018-8217.
Affected Software
Remediation
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The CVSS vector indicates local access and low privileges are required. No user interaction is required.
What systems are affected?
The affected products listed are Microsoft Windows 10 and Microsoft Windows Server 2016, including Windows 10 Servers.
What is the potential impact of successful exploitation?
An attacker could bypass Device Guard code integrity protections and inject malicious code into a Windows PowerShell session. The CVSS vector rates confidentiality, integrity, and availability impact as low.
Is a fix available?
Yes. A patch is available.