CVE-2019-1253 is an elevation of privilege vulnerability in the Windows AppX Deployment Server affecting multiple versions of Windows 10 and Windows Server. It arises from improper handling of junctions, allowing an attacker with local execution to gain elevated privileges. This vulnerability carries a high CVSS score of 7.8, indicating a significant impact with high confidentiality, integrity, and availability concerns. The attack vector is local, requiring low privileges and no user interaction, making it relatively easy to exploit once initial access is gained. The vulnerability is actively exploited, as confirmed by its inclusion in CISA's KEV catalog and known ransomware campaign use. Public exploit code is available via ExploitDB, and it has garnered notable community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:x64:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:x86:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:arm64:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:x64:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:x86:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.