8
CVE-2018-8209
- EPSS 2.81%
- Veröffentlicht 14.06.2018 12:29:01
- Zuletzt bearbeitet 21.11.2024 04:13:26
- Erkennungen
An information disclosure vulnerability exists when Windows allows a normal user to access the Wireless LAN profile of an administrative user, aka "Windows Wireless Network Profile Information Disclosure Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 10 Version -
Microsoft ≫ Windows 10 Version 1607
Microsoft ≫ Windows 10 Version 1703
Microsoft ≫ Windows 10 Version 1709
Microsoft ≫ Windows Server 2016 Version -
Microsoft ≫ Windows Server 2016 Version 1709
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.81% | 0.854 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 8 | 2.1 | 5.9 |
CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 2.7 | 5.1 | 2.9 |
AV:A/AC:L/Au:S/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
http://www.securityfocus.com/bid/104393
http://www.securitytracker.com/id/1041101
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8209