CVE-2018-8491 - Internet Explorer web browser memory corruption vulnerability
CVE-2018-8460 - Internet Explorer web browser memory corruption vulnerability
CVE-2018-8509 - Internet Explorer web browser memory corruption vulnerability
CVE-2018-8473 - Microsoft Edge remote code execution vulnerability
CVE-2018-8513 - Chakra scripting engine memory corruption vulnerability
CVE-2018-8500 - Chakra scripting engine memory corruption vulnerability
CVE-2018-8511 - Chakra scripting engine memory corruption vulnerability
CVE-2018-8505 - Chakra scripting engine memory corruption vulnerability
CVE-2018-8510 - Chakra scripting engine memory corruption vulnerability
CVE-2018-8494 - Microsoft XML Core Services remote code execution vulnerability
CVE-2018-8490 - Windows Hyper-V hypervisor remote code execution vulnerability
CVE-2018-8489 - Windows Hyper-V hypervisor remote code execution vulnerability
重要漏洞(34个):
CVE-2018-8512 - Microsoft Edge security feature bypass vulnerability
CVE-2018-8448 - Microsoft Exchange email server elevation of privilege vulnerability
CVE-2018-8453 - Windows operating system elevation of privilege vulnerability
CVE-2018-8484 - DirectX Graphics Kernel driver elevation of privilege vulnerability
CVE-2018-8423 - Microsoft JET Database Engine remote code execution vulnerability
CVE-2018-8502 - Microsoft Excel security feature bypass vulnerability
CVE-2018-8501 - Microsoft PowerPoint security feature bypass vulnerability
CVE-2018-8432 - Microsoft Graphics Components remote code execution vulnerability
CVE-2018-8504 - Microsoft Word security feature bypass vulnerability
CVE-2018-8427 - Microsoft Graphics Components information disclosure vulnerability
CVE-2018-8480 - Microsoft SharePoint elevation of privilege vulnerability
CVE-2018-8518 - Microsoft SharePoint Server elevation of privilege vulnerability
CVE-2018-8488 - Microsoft SharePoint Server elevation of privilege vulnerability
CVE-2018-8498 - Microsoft SharePoint Server elevation of privilege vulnerability
CVE-2018-8333 - Filter Management elevation of privilege vulnerability
CVE-2018-8411 - NFTS file system elevation of privilege vulnerability
CVE-2018-8320 - DNS Global Blocklist security feature bypass vulnerability
CVE-2018-8492 - Device Guard Windows security bypass vulnerability
CVE-2018-8329 - Linux on Windows elevation of privilege vulnerability
CVE-2018-8497 - Windows Kernel elevation of privilege vulnerability
CVE-2018-8495 - Windows Shell remote code execution vulnerability
CVE-2018-8413 - Windows Theme API remote code execution vulnerability
CVE-2018-8265 - Microsoft Exchange remote code execution vulnerability
CVE-2018-8330 - Windows kernel information disclosure vulnerability
CVE-2018-8472 - Windows Graphics Device Interface (GDI) information disclosure vulnerability
CVE-2018-8481 - Windows Media Player information disclosure vulnerability
CVE-2018-8482 - Windows Media Player information disclosure vulnerability
CVE-2018-8486 - DirectX information disclosure vulnerability
CVE-2018-8493 - Windows TCP/IP stack information disclosure vulnerability
CVE-2018-8506 - Microsoft Windows Codecs Library Information Disclosure vulnerability
CVE-2018-8527 - Microsoft SQL Server Management Studio (SSMS) information disclosure vulnerability
CVE-2018-8530 - Microsoft Edge security feature bypass vulnerability
CVE-2018-8531 - Azure IoT Hub Device Client SDK remote code execution vulnerability
CVE-2018-8532 - Microsoft SQL Server Management Studio (SSMS) information disclosure vulnerability
【风险等级】
高风险
【漏洞风险】
代码执行、权限提升、安全绕过以及信息泄露;
【影响版本】
目前已知受影响产品如下:
Microsoft Edge
Internet Explorer
Chakra Scripting Engine
Windows DNSAPI
Microsoft Office
Windows Kernel