PT-2019-4017 · Microsoft · Windows

Kkokkokye

·

Publicado

2019-11-12

·

Atualizado

2020-08-24

·

CVE-2019-1422

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue is related to errors in file creation handling in the iphlpsvc.dll library of the Windows operating system. It allows an attacker to potentially elevate their privileges and modify arbitrary files using a specially crafted application. This is an elevation-of-privilege issue that can affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

LPE

Link Following

Improper Privilege Management

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2019-04548
CVE-2019-1422
ZDI-19-972

Produtos afetados

Windows