CVE-2018-8337

MEDIUM

Windows Subsystem for Linux - Auth Bypass

Title source: llm
STIX 2.1

Description

A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles case sensitivity, aka "Windows Subsystem for Linux Security Feature Bypass Vulnerability." This affects Windows 10, Windows 10 Servers.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/105250

Scores

CVSS v3 5.3
EPSS 0.0147
EPSS Percentile 70.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-178
Status published
Products (2)
microsoft/windows_10 1709
microsoft/windows_server_2016 1709
Published Sep 13, 2018
Tracked Since Feb 18, 2026