CVE-2018-0878
published 2018-03-14CVE-2018-0878: Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold…
PriorityP430low3.1CVSS 3.1
AVNACHPRNUIRSUCLINAN
EXPLOIT
EPSS
21.90%
97.3th percentile
Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an information disclosure vulnerability due to how XML External Entities (XXE) are processed, aka "Windows Remote Assistance Information Disclosure Vulnerability".
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_server_2008 | — | — |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_server_2016 | — | — |
| microsoft_corporation | windows_remote_assistance | — | — |
| msrc | windows_10 | — | — |
| msrc | windows_10_version_1511 | — | — |
| msrc | windows_10_version_1607 | — | — |
| msrc | windows_10_version_1703 | — | — |
| msrc | windows_10_version_1709 | — | — |
| msrc | windows_7 | — | — |
| msrc | windows_8.1 | — | — |
| msrc | windows_rt_8.1 | — | — |
| msrc | windows_server_2008 | — | — |
| msrc | windows_server_2008_r2 | — | — |
| msrc | windows_server_2012 | — | — |
| msrc | windows_server_2012_r2 | — | — |
| msrc | windows_server_2016 | — | — |
| msrc | windows_server_version_1709 | — | — |
CVSS provenance
nvdv3.13.1LOWCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
nvdv3.03.1LOWCVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
nvdv2.02.6LOWAV:N/AC:H/Au:N/C:P/I:N/A:N
vendor_msrc3.1LOW
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9p6p-h2p9-wv46: Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
ghsa_unreviewed·2022-05-14
CVE-2018-0878 [LOW] CWE-611 GHSA-9p6p-h2p9-wv46: Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an information disclosure vulnerability due to how XML External Entities (XXE) are processed, aka "Windows Remote Assistance Information Disclosure Vulnerability".
Microsoft
Windows Remote Assistance Information Disclosure Vulnerability
vendor_msrc·2018-03-13·CVSS 3.1
CVE-2018-0878 [LOW] Windows Remote Assistance Information Disclosure Vulnerability
Windows Remote Assistance Information Disclosure Vulnerability
Description: An information disclosure vulnerability exists when Windows Remote Assistance incorrectly processes XML External Entities (XXE).
An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
To exploit this condition, an attacker would need to send a specially crafted Remote Assistance invitation file to a user. A attacker could then steal text files from known locations on the victim's machine, under the context of the user, or alternatively, steal text information from URLs accessible to the victim. The stolen information could be submitted as part of the URL in HTTP request(s) to the attacker.
In all cases an attacker would have no way to force a user
No detection rules found.
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits y vulnerabilidades
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro Mar 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-0977
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits & Vulnerabilities
# March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro
2018/03/14
Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative: CVE-2018-0815, CVE-2018-0816, CVE-2018-0878, CVE-2018-0889, CVE-2018-0929, and CVE-2018-0977.
Microso
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits & Vulnerabilities
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro 2018/03/14 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-0977 .
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Ausnutzung von Schwachstellen
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro Mar 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-097
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits & Vulnerabilities
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro Mar 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-0977 .
Talos
Microsoft Patch Tuesday - March 2018
blogs_talos·2018-03-13·CVSS 7.5
[HIGH] Microsoft Patch Tuesday - March 2018
### Microsoft Patch Tuesday - March 2018 Today, Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 74 new vulnerabilities, with 14 of them rated critical and 59 of them rated important. These vulnerabilities impact Internet Explorer, Edge, Exchange, Scripting Engine, Windows Shell and more.
#### Critical Vulnerabilities This month, Microsoft is addressing 14 vulnerabilities that are rated as critical.
The vulnerabilities rated as critical are listed below:
CVE-2018-0872 - Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2018-0874 - Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2018-0876 - Scripting Engine Memory Corruption Vulnerabi
Talos
Microsoft Patch Tuesday - March 2018
blogs_talos·2018-03-13·CVSS 7.5
[HIGH] Microsoft Patch Tuesday - March 2018
## Microsoft Patch Tuesday - March 2018
## Microsoft Patch Tuesday - March 2018 Today, Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 74 new vulnerabilities, with 14 of them rated critical and 59 of them rated important. These vulnerabilities impact Internet Explorer, Edge, Exchange, Scripting Engine, Windows Shell and more.
## Critical Vulnerabilities This month, Microsoft is addressing 14 vulnerabilities that are rated as critical.
The vulnerabilities rated as critical are listed below:
CVE-2018-0872 - Chakra Scripting Engine Memory Corruption Vulnerability CVE-2018-0874 - Chakra Scripting Engine Memory Corruption Vulnerability CVE-2018-0876 - Script
http://www.securityfocus.com/bid/103230http://www.securitytracker.com/id/1040519https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0878https://www.exploit-db.com/exploits/44352/http://www.securityfocus.com/bid/103230http://www.securitytracker.com/id/1040519https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0878https://www.exploit-db.com/exploits/44352/
2018-03-14
Published