CVE Vulnerabilities

CVE-2018-0952

Published: Aug 15, 2018 | Modified: Nov 21, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An Elevation of Privilege vulnerability exists when Diagnostics Hub Standard Collector allows file creation in arbitrary locations, aka Diagnostic Hub Standard Collector Elevation Of Privilege Vulnerability. This affects Windows Server 2016, Windows 10, Microsoft Visual Studio, Windows 10 Servers.

Affected Software

NameVendorStart VersionEnd Version
Visual_studio_2015Microsoft–update3 (including)–update3 (including)
Visual_studio_2017Microsoft- (including)- (including)
Visual_studio_2017Microsoft15.8 (including)15.8 (including)
Windows_10Microsoft- (including)- (including)
Windows_10Microsoft1607 (including)1607 (including)
Windows_10Microsoft1703 (including)1703 (including)
Windows_10Microsoft1709 (including)1709 (including)
Windows_10Microsoft1803 (including)1803 (including)
Windows_server_2016Microsoft- (including)- (including)
Windows_server_2016Microsoft1709 (including)1709 (including)
Windows_server_2016Microsoft1803 (including)1803 (including)

References