Remote Code Execution Vulnerability in Microsoft Windows Credential Security Support Protocol
CVE-2018-0886
Key Information:
Badges
Summary
The Credential Security Support Provider protocol (CredSSP) in various versions of Microsoft Windows allows remote code execution due to improper validation of requests during the authentication process. An attacker can exploit this vulnerability to execute arbitrary code on the system, potentially gaining unauthorized access and control over affected machines, leading to further system compromise.
Affected Version(s)
Windows Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709 Windows Server 2016 and Windows Server, version 1709
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
EPSS Score
90% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved