|
221811
|
7.9 |
HIGH
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
An elevation of privilege vulnerability exists when reparse points are created by sandboxed processes allowing sandbox escape. An attacker who successfully exploited the vulnerability could use the s…
|
CWE-862
Missing Authorization
|
CVE-2019-1170
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221812
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7
|
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability cou…
|
NVD-CWE-noinfo
|
CVE-2019-1169
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221813
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege exists in the p2pimsvc service where an attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges.
To exploit this vulnerabilit…
|
NVD-CWE-noinfo
|
CVE-2019-1168
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221814
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_server_2019 windows_rt_8.1
|
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code i…
|
NVD-CWE-noinfo
|
CVE-2019-1164
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221815
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
A security feature bypass exists when Windows incorrectly validates CAB file signatures. An attacker who successfully exploited this vulnerability could inject code into a CAB file without invalidati…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2019-1163
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221816
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).
An attacker who successfully exploited this vulnerability could run arbit…
|
NVD-CWE-noinfo
|
CVE-2019-1162
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221817
|
7.1 |
HIGH
Local
|
microsoft
|
windows_defender forefront_endpoint_protection_2010 security_essentials system_center_endpoint_protection
|
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.
To exploit the vulnerability, an attacker would first have to log on to…
|
NVD-CWE-noinfo
|
CVE-2019-1161
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221818
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code i…
|
NVD-CWE-noinfo
|
CVE-2019-1159
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221819
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain in…
|
CWE-200
Information Exposure
|
CVE-2019-1158
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221820
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitra…
|
NVD-CWE-noinfo
|
CVE-2019-1157
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|