CVE-2019-1044 is a security feature bypass vulnerability in Windows Secure Kernel Mode affecting Windows 10 and Windows Server 2019. It allows a locally-authenticated attacker to violate Virtual Trust Levels (VTLs) by running a specially crafted application. Rated Medium severity (CVSS 5.3), the vulnerability has low attack complexity and could lead to low impact on confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion, with only one media article covering its disclosure.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1809CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.