Improper input validation in Windows and Windows Server - CVE-2017-0007
Published: March 14, 2017 / Updated: March 14, 2017
Windows
Windows Server
Detailed vulnerability description
The vulnerability allows a remote attacker to bypass certain security restrictions
The vulnerability exists due to insufficient validation of certain elements of a signed PowerShell script within Device Guard. A remote attacker can modify the contents of a PowerShell script without invalidating the signature associated with the file and execute it on vulnerable system.
Successful exploitation of this vulnerability may allow a remote attacker to bypass implemented signature-based protection and compromise vulnerable system.
How to mitigate CVE-2017-0007
Install updates from vendor's website.