First published: Wed Nov 14 2018(Updated: )
A security feature bypass vulnerability exists in Microsoft JScript that could allow an attacker to bypass Device Guard, aka "Microsoft JScript Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | ||
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1703 | |
Microsoft Windows 10 | =1709 | |
Microsoft Windows 10 | =1803 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | =1709 | |
Microsoft Windows Server 2016 | =1803 | |
Microsoft Windows Server 2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8417 is classified as a security feature bypass vulnerability.
To fix CVE-2018-8417, users should apply the relevant Microsoft security updates provided for their affected systems.
CVE-2018-8417 affects Microsoft Windows 10, Windows Server 2016, Windows Server 2019, and various Windows 10 versions.
Yes, CVE-2018-8417 can potentially be exploited remotely by attackers to bypass security features.
Currently, there are no known workarounds for CVE-2018-8417, and it is recommended to apply the patch.