Denial of Service Vulnerability in Windows Optimization Master
CVE-2018-9048

7.8HIGH

What is CVE-2018-9048?

In Windows Optimization Master version 7.99.13.604, the driver file WoptiHWDetect.SYS has a vulnerability that allows local users to initiate a denial of service attack. This is achieved through improperly validated input values from IOCtl call 0xf100282c, potentially leading to a system crash (BSOD) or other unspecified impacts. It is essential for users and system administrators to update to the latest version and follow best practices to mitigate potential risks associated with this vulnerability.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.