#VU12491 Security restrictions bypass in Microsoft Internet Explorer - CVE-2018-8126
Published: May 8, 2018 / Updated: May 8, 2018
Microsoft Internet Explorer
Microsoft
Description
The vulnerability allows a remote attacker to bypass security restrictions.
The vulnerability exists due to an error when Internet Explorer fails to validate User Mode Code Integrity (UMCI) policies. A remote attacker can trick the victim into visiting a specially crafted website, run unsigned malicious code as though it were signed by a trusted source and bypass Device Guard UMCI policies.