A security feature bypass vulnerability exists in Device Guard that could allow an malicious user to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8201, CVE-2018-8211, CVE-2018-8212, CVE-2018-8215, CVE-2018-8216, CVE-2018-8217.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft windows 10 1607 |
||
microsoft windows server 2016 - |
||
microsoft windows 10 1703 |
||
microsoft windows 10 - |
||
microsoft windows 10 1709 |
||
microsoft windows server 2016 1709 |
||
microsoft windows 10 1803 |
||
microsoft windows server 2016 1803 |
Cortana also a little too eager to carry out commands Have to use SMB 1.0? Windows 10 April 2018 Update says NO
Microsoft has released its monthly security update, addressing a total of 51 CVE-listed security vulnerabilities. The June edition of Patch Tuesday includes 11 fixes for critical vulnerabilities in Windows, including Microsoft's solution for the recently-disclosed Spectre Variant 4 chip design flaw. Among the most serious bugs addressed this month is CVE-2018-8225, a remote code execution vulnerability present in the Windows DNSAPI. Microsoft says that the flaw would allow an attacker to take ov...