CVE-2018-0809 is an elevation of privilege vulnerability in the Windows kernel affecting Windows 10 versions 1703 and 1709, and Windows Server version 1709, stemming from improper memory object handling. It carries a CVSS v3 score of 7.0 (HIGH), indicating that a low-privileged attacker with high attack complexity can achieve full confidentiality, integrity, and availability compromise. While there is no known public exploit code or active exploitation, the vulnerability has received some community and media attention. This CVE is distinct from several other related vulnerabilities.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1703CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:* | ||
1709CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:* | ||
1709CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:1709:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.