Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an information disclosure vulnerability due to how XML External Entities (XXE) are processed, aka "Windows Remote Assistance Information Disclosure Vulnerability".
History

Fri, 04 Apr 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 3.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published: 2018-03-14T17:00:00.000Z

Updated: 2025-04-04T20:38:12.885Z

Reserved: 2017-12-01T00:00:00.000Z

Link: CVE-2018-0878

cve-icon Vulnrichment

Updated: 2024-08-05T03:44:11.026Z

cve-icon NVD

Status : Modified

Published: 2018-03-14T17:29:01.120

Modified: 2025-04-04T21:15:41.180

Link: CVE-2018-0878

cve-icon Redhat

No data.