Windows 10 version 1607 and Windows Server 2016 allow an elevation of privilege vulnerability due to how the MultiPoint management account password is stored, aka "Windows Elevation of Privilege Vulnerability".
                
            References
                    | Link | Resource | 
|---|---|
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0828 | Patch Vendor Advisory | 
| http://www.securitytracker.com/id/1040373 | Third Party Advisory VDB Entry | 
| http://www.securityfocus.com/bid/102935 | Third Party Advisory VDB Entry | 
Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Information
                Published : 2018-02-14 18:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-0828
Mitre link : CVE-2018-0828
JSON object : View
CWE
                
                    
                        
                        CWE-522
                        
            Insufficiently Protected Credentials
Products Affected
                microsoft
- windows_server_2016
 - windows_10
 


