CVE-2018-0880
The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how the virtual registry is managed, aka "Windows Desktop Bridge Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0882.
- Affected products
- Desktop Bridge, Windows, Windows 10, Windows Server, Windows Server 2016
- Microsoft Windows 10
- All versions
- Microsoft Windows Server
- = 1709
- Microsoft Windows Server 2016
- All versions
- Fix
- Available
- CVSS 3.0
- 7.0 HIGH
- EPSS
- 3.1% (87th percentile)
- NVD status
- Modified
- Published
- 2018-03-14
CVE-2018-0880 at NVD
5 known exploits for CVE-2018-0880
Proof-of-concept code and exploit modules indexed by Sploitus
Microsoft Windows 10 - Desktop Bridge Virtual Registry CVE-2018-0880 Incomplete Fix Privilege Escalation
Windows 10 - #Windows10 Desktop Bridge Virtual Registry Incomplete Fix Privilege Escalation
Microsoft Windows 10 - Desktop Bridge Virtual Registry CVE-2018-0880 Incomplete Fix Privilege Escalation
Microsoft Windows - Desktop Bridge Virtual Registry Arbitrary File Read/Write Privilege Escalation E
Microsoft Windows - Desktop Bridge Virtual Registry Arbitrary File Read/Write Privilege Escalation