An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0797.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/157616/Microsoft-Windows-NtUserMNDragOver-Local-Privilege-Escalation.html | Exploit Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/157616/Microsoft-Windows-NtUserMNDragOver-Local-Privilege-Escalation.html | Exploit Third Party Advisory VDB Entry |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0808 | Patch Vendor Advisory |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0808 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
27 Jan 2025, 21:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/157616/Microsoft-Windows-NtUserMNDragOver-Local-Privilege-Escalation.html - Exploit, Third Party Advisory, VDB Entry | |
References | () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0808 - Patch, Vendor Advisory |
25 Jul 2024, 16:19
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) http://packetstormsecurity.com/files/157616/Microsoft-Windows-NtUserMNDragOver-Local-Privilege-Escalation.html - Exploit, Third Party Advisory, VDB Entry | |
CPE | cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_7:sp1:*:*:*:*:*:*:* |
cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:* |
Information
Published : 2019-04-09 03:29
Updated : 2025-04-04 20:48
NVD link : CVE-2019-0808
Mitre link : CVE-2019-0808
JSON object : View
Products Affected
microsoft
- windows_7
- windows_server_2008
CWE