VDB
BDU%3A2018-00607
BDU%3A2018-00607
PUBLISHED
CVSS 7.599999904632568 HIGH
Уязвимость протокола безопасности учетных данных (Credential Security Support Provider protocol, CredSSP) операционной системы Windows, позволяющая нарушителю выполнять произвольные команды от имени легитимного пользователя
Risk Scores
CVSS 2.0
7.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft Corp | Windows 7 Service Pack 1, Windows Server 2008 Service Pack 2, Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows Server 2008 R2 Service Pack 1, Windows RT 8.1, Windows 10, Windows 10 1511, Windows 10 1607, Windows 10 1703, Windows Server 2016, Windows 10 1709 |
Timeline
- Apr 27, 2018 CVE Published
- Mar 23, 2021 CVE Updated
- Mar 18, 2026 Security Advisory
References
- http://www.securityfocus.com/bid/103265 url
- http://www.securitytracker.com/id/1040506 url
- https://blog.preempt.com/security-advisory-credssp url
- http://www.exploit-db.com/exploits/44453/ url
- https://github.com/preempt/credssp url
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0886 url