Possible wrongful detection of CVE-2018-0952 (Diagnostic Hub Standard Collector EoP - Aug18)


Using the community feed on 7.03 a scan on a fully patched Windows 2016 server is reporting the folowing vulnerability:
Microsoft Visual Studio ‘Diagnostic Hub Standard Collector’ Elevation Of Privilege Vulnerability-Aug18

According to https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0952 this was fixed in KB4343887 (OS-Build 14393.2430)
I think the check should also consider the OS-Build version on Windows 10 1607/Windows Server 2016.



I just have seen that the Product/Version-Detection which is the base for this vulnerability report has been updated yesterday, this might already solve the seen issue.