An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1215, CVE-2019-1278, CVE-2019-1303.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/154488/AppXSvc-17763.1.amd64fre.rs5_release.180914-1434-Privilege-Escalation.html | Third Party Advisory VDB Entry |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1253 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
16 Jul 2024, 17:46
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:* |
cpe:2.3:o:microsoft:windows_server_1803:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:* |
CWE | NVD-CWE-noinfo | |
First Time |
Microsoft windows 10 1709
Microsoft windows 10 1803 Microsoft windows 10 1703 Microsoft windows Server 1903 Microsoft windows 10 1809 Microsoft windows Server 1803 Microsoft windows 10 1903 |
|
References | () http://packetstormsecurity.com/files/154488/AppXSvc-17763.1.amd64fre.rs5_release.180914-1434-Privilege-Escalation.html - Third Party Advisory, VDB Entry |
Information
Published : 2019-09-11 22:15
Updated : 2024-07-16 17:46
NVD link : CVE-2019-1253
Mitre link : CVE-2019-1253
CVE.ORG link : CVE-2019-1253
JSON object : View
Products Affected
microsoft
- windows_10_1903
- windows_10_1803
- windows_10_1809
- windows_10_1709
- windows_server_1803
- windows_server_1903
- windows_server_2019
- windows_10_1703
CWE