An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1476.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1483 | Patch Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-19-1005/ | Third Party Advisory VDB Entry |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1483 | Patch Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-19-1005/ | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:36
Type | Values Removed | Values Added |
---|---|---|
References | () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1483 - Patch, Vendor Advisory | |
References | () https://www.zerodayinitiative.com/advisories/ZDI-19-1005/ - Third Party Advisory, VDB Entry |
Information
Published : 2019-12-10 22:15
Updated : 2024-11-21 04:36
NVD link : CVE-2019-1483
Mitre link : CVE-2019-1483
CVE.ORG link : CVE-2019-1483
JSON object : View
Products Affected
microsoft
- windows_server_2019
- windows_10
- windows_server_2016
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')