CVE-2016-3287Microsoft Windows 10 vulnerability

CWE-2545 documents4 sources
Severity
4.4MEDIUMNVD
EPSS
0.5%
top 33.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 13
Latest updateMay 14

Description

Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to bypass the Secure Boot protection mechanism by leveraging administrative access to install a crafted policy, aka "Secure Boot Security Feature Bypass."

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:NExploitability: 0.8 | Impact: 3.6

🔴Vulnerability Details

1
GHSA
GHSA-whq3-926m-h9qp: Microsoft Windows 82022-05-14

📋Vendor Advisories

1
Microsoft
Secure Boot Security Feature Bypass Vulnerability2016-07-12

🕵️Threat Intelligence

2
Talos
Microsoft Patch Tuesday - July 20162016-07-12
Talos
Microsoft Patch Tuesday - July 20162016-07-12