[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Device Guard Security Feature Bypass Vulnerability - CVE-2018-8449

ID: oval:org.secpod.oval:def:47458Date: (C)2018-09-12   (M)2024-03-06
Class: VULNERABILITYFamily: windows




A security feature bypass exists when Device Guard incorrectly validates an untrusted file. An attacker who successfully exploited this vulnerability could make an unsigned file appear to be signed. Because Device Guard relies on the signature to determine the file is non-malicious, Device Guard could then allow a malicious file to execute. In an attack scenario, an attacker could make an untrusted file appear to be a trusted file. The update addresses the vulnerability by correcting how Device Guard handles untrusted files.

Platform:
Microsoft Windows Server
Microsoft Windows 10
Microsoft Windows Server 2016
Reference:
CVE-2018-8449
CVE    1
CVE-2018-8449
CPE    17
cpe:/o:microsoft:windows_10
cpe:/o:microsoft:windows_server_2016:::x64
cpe:/o:microsoft:windows_10:1607:::x64
cpe:/o:microsoft:windows_10:1607:::x86
...

© SecPod Technologies