CVE-2019-1253
CVE Published | 2019-09-11 |
---|---|
Related CWE(s) | CWE-59: Improper Link Resolution Before File Access ('Link Following') |
Related Vendor(s) | microsoft |
Related Product(s) | windows_server_1903, windows_10_1703, windows_10, windows_10_1809, windows_server_2019, windows_10_1903, windows_server_2016, windows_10_1803, windows_server_1803, windows_10_1709 |
Exploitation Reported (CISA KEV) | 2022-03-15 |
CVSS 3 Base Score | 7.8 (HIGH) |
CVSS 3 Attack Complexity | LOW |
CVSS 3 Attack Vector | LOCAL |
An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1215, CVE-2019-1278, CVE-2019-1303.
Cyber Threat Graph Context
Explore how this CVE relates to the wider threat graph