CVE-2018-8327

4 documents4 sources
Severity
9.8CRITICAL
EPSS
23.5%
top 4.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 11
Latest updateMay 13

Description

A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability." This affects PowerShell Editor, PowerShell Extension.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages4 packages

CVEListV5microsoft/powershell_editorServices
CVEListV5microsoft/powershell_extensionVisual Studio Code

Patches

🔴Vulnerability Details

2
GHSA
GHSA-47pm-99w9-6mx8: A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability2022-05-13
CVEList
CVE-2018-8327: A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability2018-07-11

📋Vendor Advisories

1
Microsoft
PowerShell Editor Services Remote Code Execution Vulnerability2018-07-10
CVE-2018-8327 (CRITICAL CVSS 9.8) | A remote code execution vulnerabili | cvebase.io