CVE-2017-11899

Description

Device Guard in Windows 10 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a security feature bypass vulnerability due to the way untrusted files are handled, aka Microsoft Windows Security Feature Bypass Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
20.177

Associated Vulnerability

VulnerabilityOS Platform
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1703 for x64-based Systems (KB4053580) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1703 for x64-based Systems (KB4053580) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1703 for x86-based Systems (KB4053580) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1703 for x86-based Systems (KB4053580) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4054517) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4054517) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4054517) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4054517) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1511 for x64-based Systems (KB4053578) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1511 for x86-based Systems (KB4053578) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows Server 2016 for x64-based Systems (KB4053579) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows Server 2016 for x64-based Systems (KB4053579) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4053579) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4053579) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4053579) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4053579) - DeltaWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB4053581) - CumulativeWindows
Internet Explorer Information Disclosure Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB4053581) - CumulativeWindows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-23527Cumulative Update for Windows 10 Version 1709 for x64-based Systems (KB4054517)
PATCH-23529Delta Update for Windows 10 Version 1709 for x64-based Systems (KB4054517)
PATCH-23526Cumulative Update for Windows 10 Version 1709 for x86-based Systems (KB4054517)
PATCH-23528Delta Update for Windows 10 Version 1709 for x86-based Systems (KB4054517)
PATCH-23515Cumulative Update for Windows 10 Version 1511 for x64-based Systems (KB4053578)
PATCH-23514Cumulative Update for Windows 10 Version 1511 for x86-based Systems (KB4053578)
PATCH-23518Cumulative Update for Windows Server 2016 for x64-based Systems (KB4053579)
PATCH-23521Delta Update for Windows Server 2016 for x64-based Systems (KB4053579)
PATCH-23517Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4053579)
PATCH-23520Delta Update for Windows 10 Version 1607 for x64-based Systems (KB4053579)
PATCH-23516Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB4053579)
PATCH-23519Delta Update for Windows 10 Version 1607 for x86-based Systems (KB4053579)
PATCH-23513Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB4053581)
PATCH-23512Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB4053581)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234