CVE-2018-8222: Medium severity Microsoft Windows 10 vulnerability
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.
Affected Software
Remediation
Event History
Frequently Asked Questions
Who could exploit this vulnerability?
An attacker would need local access to the affected system and low-privileged access. The CVSS vector indicates no user interaction is required.
What is the potential impact of successful exploitation?
Successful exploitation could bypass the Device Guard Code Integrity Policy security feature and allow malicious code injection into a Windows PowerShell session. Confidentiality, integrity, and availability impacts are each rated Low.
Which systems are identified as affected?
The affected products listed are Microsoft Windows 10 and Microsoft Windows Server 2016, including Windows 10 Servers.
What should administrators do?
Apply the available patch for CVE-2018-8222. The provided data does not specify an alternative mitigation for environments where patching must be delayed.