[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Internet Explorer Security Feature Bypass Vulnerability - CVE-2017-8625

ID: oval:org.secpod.oval:def:41609Date: (C)2017-08-09   (M)2024-03-06
Class: VULNERABILITYFamily: windows




A security feature bypass vulnerability exists when Internet Explorer fails to validate User Mode Code Integrity (UMCI) policies. The vulnerability could allow an attacker to bypass Device Guard UCMI policies.To exploit the vulnerability, a user could either visit a malicious website or an attacker with access to the system could run a specially crafted application. An attacker could then leverage the vulnerability to run unsigned malicious code as though it were signed by a trusted source.The update addresses the vulnerability by correcting how Internet Explorer validates UMCI policies.

Platform:
Microsoft Windows 10
Microsoft Windows Server 2016
Product:
Microsoft Internet Explorer 11
Reference:
CVE-2017-8625
CVE    1
CVE-2017-8625
CPE    11
cpe:/o:microsoft:windows_10
cpe:/o:microsoft:windows_10:1511
cpe:/o:microsoft:windows_server_2016:::x64
cpe:/o:microsoft:windows_10:1607:::x64
...

© SecPod Technologies