vulnerability
Microsoft Windows: CVE-2019-1074: Microsoft Windows Elevation of Privilege Vulnerability
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
2 | (AV:L/AC:L/Au:N/C:P/I:N/A:N) | Jul 9, 2019 | Jul 9, 2019 | Aug 7, 2024 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Jul 9, 2019
Added
Jul 9, 2019
Modified
Aug 7, 2024
Description
An elevation of privilege vulnerability exists in Microsoft Windows where certain folders, with local service privilege, are vulnerable to symbolic link attack. An attacker who successfully exploited this vulnerability could potentially access unauthorized information. The update addresses this vulnerability by not allowing symbolic links in these scenarios., aka 'Microsoft Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1082.
Solution(s)
microsoft-windows-windows_10-1709-kb4507455microsoft-windows-windows_10-1803-kb4507435microsoft-windows-windows_10-1809-kb4507469microsoft-windows-windows_10-1903-kb4507453microsoft-windows-windows_server_2019-1809-kb4507469msft-kb4507453-8cedcb21-0200-433d-b32d-2d5ef741adec

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.