CVE-2019-1253
high · 7.8Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
Added 2022-03-15Remediation due 2022-04-05
An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1215, CVE-2019-1278, CVE-2019-1303.
7.8
CVSS
11.6%
EPSS (exploit prob.)
96th
EPSS percentile
2019-09-11
Published
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-59
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | windows_10_1703 | all versions |
| microsoft | windows_10_1703 | all versions |
| microsoft | windows_10_1709 | all versions |
| microsoft | windows_10_1709 | all versions |
| microsoft | windows_10_1709 | all versions |
| microsoft | windows_10_1803 | all versions |
| microsoft | windows_10_1803 | all versions |
| microsoft | windows_10_1803 | all versions |
| microsoft | windows_10_1809 | all versions |
| microsoft | windows_10_1809 | all versions |
| microsoft | windows_10_1809 | all versions |
| microsoft | windows_10_1903 | all versions |
| microsoft | windows_10_1903 | all versions |
| microsoft | windows_10_1903 | all versions |
| microsoft | windows_server_1803 | all versions |
| microsoft | windows_server_1903 | all versions |
| microsoft | windows_server_2019 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/154488/AppXSvc-17763.1.amd64fre.rs5_release.180914-1434-Privilege-Escalation.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1253
- http://packetstormsecurity.com/files/154488/AppXSvc-17763.1.amd64fre.rs5_release.180914-1434-Privilege-Escalation.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1253
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-1253
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2019-1253