The Desktop Bridge Virtual File System (VFS) in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how file paths are managed, aka "Windows Desktop Bridge VFS Elevation of Privilege Vulnerability".
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/103227 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1040520 | Third Party Advisory VDB Entry |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0877 | Patch Vendor Advisory |
https://www.exploit-db.com/exploits/44313/ | Exploit Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: microsoft
Published: 2018-03-14T00:00:00
Updated: 2018-03-22T09:57:01
Reserved: 2017-12-01T00:00:00
Link: CVE-2018-0877
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-03-14T17:29:01.073
Modified: 2022-05-23T17:29:15.437
Link: CVE-2018-0877
JSON object: View
Redhat Information
No data.
CWE