PT-2019-4017 · Microsoft · Windows

Kkokkokye

·

Published

2019-11-12

·

Updated

2020-08-24

·

CVE-2019-1422

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue is related to errors in file creation handling in the iphlpsvc.dll library of the Windows operating system. It allows an attacker to potentially elevate their privileges and modify arbitrary files using a specially crafted application. This is an elevation-of-privilege issue that can affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

LPE

Link Following

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-04548
CVE-2019-1422
ZDI-19-972

Affected Products

Windows