CVE-2018-8999: Input Validation
Published Mar 25, 2018
·Updated
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitorwin7x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060c4.
Affected Software
1 affected component
IObit Advanced SystemCare Ultimate=11.0.1.58
Event History
Mar 25, 2018
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Data Sourced
via NVD·03:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-8999.
2
What is the severity of CVE-2018-8999?
The severity of CVE-2018-8999 is high with a CVSS score of 7.8.
3
What is the affected software?
The affected software is IOBit Advanced SystemCare Ultimate version 11.0.1.58.
4
What is the impact of this vulnerability?
The vulnerability allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact.
5
Is there a fix available for CVE-2018-8999?
It is recommended to update to a fixed version of IOBit Advanced SystemCare Ultimate.