← Back to browse · API

CVE-2018-8414

Severity
HIGH
CVSS
8.8
EPSS
0.73968
Risk score
86.09
CISA KEV
Yes
PoC
No
Published
2022-03-25
Modified
2022-03-25
First seen
2026-08-07
Aliases
EUVD-2018-20051, GHSA-XG99-MPWJ-GF2C
Products
Microsoft:Windows, Microsoft:Windows 10 Servers version 1709 (Server Core Installation), Microsoft:Windows 10 Servers version 1803 (Server Core Installation), Microsoft:Windows 10 Version 1703 for 32-bit Systems, Microsoft:Windows 10 Version 1703 for x64-based Systems, Microsoft:Windows 10 Version 1709 for 32-bit Systems, Microsoft:Windows 10 Version 1709 for x64-based Systems, Microsoft:Windows 10 Version 1803 for 32-bit Systems, Microsoft:Windows 10 Version 1803 for x64-based Systems
Sources
euvd EUVD-2018-20051
cisa.gov CVE-2018-8414

Description

A remote code execution vulnerability exists when the Windows Shell does not properly validate file paths.

References