CVE-2017-11899
Device Guard in Windows 10 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a security feature bypass vulnerability due to the way untrusted files are handled, aka "Microsoft Windows Security Feature Bypass…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (5.84%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Device Guard in Windows 10 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a security feature bypass vulnerability due to the way untrusted files are handled, aka "Microsoft Windows Security Feature Bypass Vulnerability".
- CVSS 3.0
- 9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 5.84% probability · 93th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/windows 10 · microsoft/windows server 2016
- Source
- secure@microsoft.com
References
- http://www.securityfocus.com/bid/102077Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039992Third Party Advisory, VDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11899Patch, Vendor Advisory
- http://www.securityfocus.com/bid/102077Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039992Third Party Advisory, VDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11899Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.