CVE-2018-0827 — Corporation Windows Scripting Host vulnerability
5 documents4 sources
Severity
5.3MEDIUMNVD
EPSS
2.2%
top 15.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 15
Latest updateMay 13
Description
Windows Scripting Host (WSH) in Windows 10 versions 1703 and 1709 and Windows Server, version 1709 allows a Device Guard security feature bypass vulnerability due to the way objects are handled in memory, aka "Windows Security Feature Bypass Vulnerability".
CVSS vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LExploitability: 1.8 | Impact: 3.4
Affected Packages8 packages
▶CVEListV5microsoft_corporation/windows_scripting_hostWindows 10 versions 1703 and 1709 and Windows Server, version 1709
Patches
🔴Vulnerability Details
1GHSA▶
GHSA-hwwx-9pq5-8p52: Windows Scripting Host (WSH) in Windows 10 versions 1703 and 1709 and Windows Server, version 1709 allows a Device Guard security feature bypass vulne↗2022-05-13