CVE Database
/

CVE-2018-8215

Back to search

CVE-2018-8215

Published: Jun 14, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8201, CVE-2018-8211, CVE-2018-8212, CVE-2018-8216, CVE-2018-8217, CVE-2018-8221.

VendorProductVersions

Microsoft

Windows Server 2016

affected
(Server Core installation)

Microsoft

Windows 10

affected
32-bit Systems
affected
Version 1607 for 32-bit Systems
affected
Version 1607 for x64-based Systems
affected
Version 1703 for 32-bit Systems
affected
Version 1703 for x64-based Systems

+5 more versions

Microsoft

Windows 10 Servers

affected
version 1709 (Server Core Installation)
affected
version 1803 (Server Core Installation)

References

1041098
vdb-entry
x_refsource_SECTRACK
104333
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now