Security feature bypass in Microsoft Windows and Windows Server - CVE-2018-8212
Published: June 12, 2018
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to Device Guard allows a local user to inject malicious code into a Windows PowerShell session. A local attacker can bypass Device Guard Code Integrity policy and execute arbitrary code on the target system with escalated privileges.
Affected software
Windows Server