Risk Scores
CVSS v2.0
7.199999809265137
EPSS Score
79.17%
99.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows 10 | Version 1709 for 32-bit Systems, 32-bit Systems, Version 1607 for 32-bit Systems |
| microsoft | windows_server_2012 | r2 |
| Microsoft | Windows 8.1 | 32-bit systems, x64-based systems |
| Microsoft | Windows RT 8.1 | Windows RT 8.1 |
| Microsoft | Windows Server 2012 R2 | (Server Core installation) |
| microsoft | windows_server_1709 | |
| microsoft | windows_server_2019 | |
| microsoft | windows_10_1803 | |
| microsoft | windows_server_1803 | |
| microsoft | windows_10_1809 | |
| Microsoft | Windows Server 2019 | (Server Core installation) |
| microsoft | windows_server_2016 | |
| Microsoft | Windows 10 Servers | version 1709 (Server Core Installation), version 1803 (Server Core Installation) |
| Microsoft | Windows Server 2016 | (Server Core installation) |
| microsoft | windows_10_1607 | |
| microsoft | windows_7 | |
| Microsoft | Windows 7 | 32-bit Systems Service Pack 1, x64-based Systems Service Pack 1 |
| microsoft | windows_10_1709 | |
| Microsoft | Windows Server 2012 | (Server Core installation) |
| Microsoft | Windows Server 2008 R2 | x64-based Systems Service Pack 1 (Server Core installation), Itanium-Based Systems Service Pack 1, x64-based Systems Service Pack 1 |
…and 6 more
Timeline
- Jan 19, 1970 VulnCheck XDB Entry
- Jan 19, 1970 VulnCheck XDB Entry
- Oct 9, 2018 PoC Published
- Oct 10, 2018 CVE Published
- Oct 10, 2018 PoC Published
- Oct 10, 2018 PoC Published
- Oct 10, 2018 PoC Published
- Oct 10, 2018 PoC Published
- Oct 10, 2018 PoC Published
- Apr 9, 2019 VulnCheck KEV Exploitation
- Jul 15, 2019 PoC Published
- Jul 16, 2019 PoC Published
References
- 1041828 vdb
- https://securelist.com/cve-2018-8453-used-in-targeted-attack url
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8453 url
- 105467 vdb
- http://packetstormsecurity.com/files/153669/Microsoft-Windows-NtUserSetWindowFNID-Win32k-User-Callback.html url
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8453 url
- https://nvd.nist.gov/vuln/detail/CVE-2018-8453 advisory
- https://portal.msrc.microsoft.com/fr-FR/security-guidance advisory