CVE-2018-8445 is an information disclosure vulnerability in the Windows kernel affecting Windows 10 and Windows Server. This medium-severity flaw (CVSS 5.5) allows a local attacker to gain unauthorized access to sensitive information due to improper handling of objects in memory. While there is no public exploit code available (Metasploit, Nuclei, ExploitDB), the vulnerability has received limited community discussion and media coverage, indicating low active exploitation. Organizations should apply the relevant security updates to mitigate this risk.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1803CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:* | ||
1803CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server:1803:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.