CVE-2018-8117

Published Apr 12, 2018

Last updated 3 days ago

Overview

Description
A security feature bypass vulnerability exists in the Microsoft Wireless Keyboard 850 which could allow an attacker to reuse an AES encryption key to send keystrokes to other keyboard devices or to read keystrokes sent by other keyboards for the affected devices, aka "Microsoft Wireless Keyboard 850 Security Feature Bypass Vulnerability." This affects Microsoft Wireless Keyboard 850.
Source
secure@microsoft.com
NVD status
Modified

Risk scores

CVSS 3.0

Type
Primary
Base score
6.8
Impact score
5.2
Exploitability score
1.6
Vector string
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Severity
MEDIUM

CVSS 2.0

Type
Primary
Base score
7.3
Impact score
9.2
Exploitability score
5.5
Vector string
AV:A/AC:M/Au:N/C:C/I:C/A:N

Weaknesses

nvd@nist.gov
NVD-CWE-noinfo

Social media

Hype score
Not currently trending

Configurations