PowerShell Script Modification Vulnerability in Microsoft Windows 10 and Server 2016
CVE-2017-0007
5.5MEDIUM
Summary
The PowerShell Security Feature Bypass vulnerability in Microsoft Windows 10 and Windows Server 2016 allows remote attackers to alter PowerShell scripts while preserving their associated signatures. This could grant unauthorized execution of malicious scripts, potentially compromising system security and integrity. The flaw affects multiple versions of Windows and underscores the necessity for robust security policies and practices.
Affected Version(s)
Device Guard Device Guard in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved