PT-2017-18376 · Microsoft · Windows Server 2012 R2+5
Nicolas Joly
·
Published
2017-06-13
·
Updated
2019-10-03
·
CVE-2017-8493
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows versions 8.1, 10 (Gold, 1511, 1607, 1703), and Windows Server versions 2012 R2, 2016
Description
A security issue exists where Windows fails to enforce case sensitivity for certain variable checks, allowing an attacker to set variables that are either read-only or require authentication. This affects the system.
Recommendations
For Windows 8.1, Windows RT 8.1, Windows Server 2012 R2, Windows 10 (Gold, 1511, 1607, 1703), and Windows Server 2016, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Windows 10
Windows 8.1
Windows Rt 8.1
Windows Server 2012 R2
Windows Server 2016