CVE-2018-8337

MEDIUM

Windows Subsystem for Linux - Auth Bypass

Title source: llm
STIX 2.1

Description

A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles case sensitivity, aka "Windows Subsystem for Linux Security Feature Bypass Vulnerability." This affects Windows 10, Windows 10 Servers.

Scores

CVSS v3 5.3
EPSS 0.0085
EPSS Percentile 75.0%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-178
Status published
Products (2)
microsoft/windows_10 1709
microsoft/windows_server_2016 1709
Published Sep 13, 2018
Tracked Since Feb 18, 2026