5.2
CVSSv2

CVE-2018-8306

Published: 11/07/2018 Updated: 03/10/2019
CVSS v2 Base Score: 5.2 | Impact Score: 6.4 | Exploitability Score: 5.1
CVSS v3 Base Score: 5.5 | Impact Score: 3.4 | Exploitability Score: 2.1
VMScore: 463
Vector: AV:A/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

A command injection vulnerability exists in the Microsoft Wireless Display Adapter (MWDA) when the Microsoft Wireless Display Adapter does not properly manage user input, aka "Microsoft Wireless Display Adapter Command Injection Vulnerability." This affects Microsoft Wireless Display Adapter V2 Software.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft wireless_display_adapter_firmware 2.0.8350

microsoft wireless_display_adapter_firmware 2.0.8365

microsoft wireless_display_adapter_firmware 2.0.8372

Exploits

Microsoft Wireless Display Adapter versions 208350 to 208372 suffer from command injection, broken access control, and evil twin attack vulnerabilities ...

Recent Articles

Intel, Microsoft, Adobe release a swarm of bug fixes to ruin your week
The Register • Shaun Nichols in San Francisco • 11 Jul 2018

Massive patch dump with 112 fixes... and that's just for the Photoshop giant

IT admins face a busy week ahead as Microsoft, Intel, and Adobe have issued bundles of scheduled security fixes addressing more than 150 CVE-listed vulnerabilities. For Redmond, the July Patch Tuesday will bring fixes for 53 individual bugs, 25 of those allowing for remote code execution attacks. This includes the usual array of Edge and Internet Explorer memory corruption flaws that could allow an attacker to place exploits within a web page and use them to take over a system with the current u...