Denial of Service Flaw in Windows Optimization Master by Windows
CVE-2018-9050

7.8HIGH

What is CVE-2018-9050?

A vulnerability in Windows Optimization Master allows local users to trigger a denial of service (DoS) by exploiting the WoptiHWDetect.SYS driver. This is achieved through improper validation of input values from the IOCtl command 0xf100202d, potentially leading to system crashes (BSOD) or other unspecified effects.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.