PT-2019-3514 · Microsoft · Windows Cloudstore+1

Published

2019-10-08

·

Updated

2026-03-10

·

CVE-2019-1321

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows CloudStore (affected versions not specified)
Description The issue is related to improper handling of file Discretionary Access Control List (DACL) by Windows CloudStore, which can lead to an elevation of privilege. This can be exploited by an attacker using a specially crafted application to gain elevated privileges. The vulnerability is associated with insufficient access control management in Windows CloudStore.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BDU:2019-03689
CVE-2019-1321

Affected Products

Windows
Windows Cloudstore