Microsoft · Device Guard · CVE-2017-8625
**Name of the Vulnerable Software and Affected Versions**
Internet Explorer versions in Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016
**Description**
A security issue exists due to Internet Explorer failing to validate User Mode Code Integrity (UMCI) policies, allowing an attacker to bypass Device Guard UMCI policies.
**Recommendations**
For Internet Explorer in Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016, update Internet Explorer to a version that properly validates UMCI policies to prevent bypassing Device Guard policies.