CVE-2018-0949
medium · 6.5A security feature bypass vulnerability exists when Microsoft Internet Explorer improperly handles requests involving UNC resources, aka "Internet Explorer Security Feature Bypass Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10.
6.5
CVSS
11.7%
EPSS (exploit prob.)
96th
EPSS percentile
2018-07-11
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | internet_explorer | 10 |
| microsoft | windows_server_2012 | all versions |
| microsoft | internet_explorer | 11 |
| microsoft | windows_10 | all versions |
| microsoft | windows_10 | 1607 |
| microsoft | windows_10 | 1703 |
| microsoft | windows_10 | 1709 |
| microsoft | windows_10 | 1803 |
| microsoft | windows_7 | all versions |
| microsoft | windows_8.1 | all versions |
| microsoft | windows_rt_8.1 | all versions |
| microsoft | windows_server_2008 | r2 |
| microsoft | windows_server_2012 | r2 |
| microsoft | windows_server_2016 | all versions |
| microsoft | internet_explorer | 9 |
| microsoft | windows_server_2008 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/104622
- http://www.securitytracker.com/id/1041258
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0949
- http://www.securityfocus.com/bid/104622
- http://www.securitytracker.com/id/1041258
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0949
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-0949