CVE-2018-8141 is an information disclosure vulnerability within the Windows kernel, affecting Windows 10 and Windows Server 2016, where improper memory handling can lead to sensitive data exposure. Rated Medium severity (CVSS 4.7), it requires local access and high attack complexity, but does not involve user interaction, potentially resulting in high confidentiality impact. There is no evidence of active exploitation, nor are public exploit modules like Metasploit or Nuclei available, despite some community discussion and media coverage at the time of its disclosure.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1709CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:* | ||
1709CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:1709:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.