CVE-2018-8209

LOW

Description

An information disclosure vulnerability exists when Windows allows a normal user to access the Wireless LAN profile of an administrative user, aka "Windows Wireless Network Profile Information Disclosure Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

References

http://www.securityfocus.com/bid/104393

http://www.securitytracker.com/id/1041101

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8209

Details

Source: MITRE

Published: 2018-06-14

Updated: 2018-08-06

Type: CWE-255

Risk Information

CVSS v2.0

Base Score: 2.7

Vector: (AV:A/AC:L/Au:S/C:P/I:N/A:N)

Impact Score: 2.9

Exploitability Score: 5.1

Severity: LOW

CVSS v3.0

Base Score: 8

Vector: CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 2.1

Severity: HIGH