CVE-2019-0637Microsoft Windows vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
EPSS
11.6%
top 6.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 5
Latest updateMay 13

Description

A security feature bypass vulnerability exists when Windows Defender Firewall incorrectly applies firewall profiles to cellular network connections, aka 'Windows Defender Firewall Security Feature Bypass Vulnerability'.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages16 packages

CVEListV5microsoft/windows9 versions+8
NVDmicrosoft/windows1709, 1803+1
NVDmicrosoft/windows_101709, 1803, 1809+2
CVEListV5microsoft/windows_server4 versions+3

Patches

🔴Vulnerability Details

1
GHSA
GHSA-xvfp-x78m-7x4j: A security feature bypass vulnerability exists when Windows Defender Firewall incorrectly applies firewall profiles to cellular network connections, a2022-05-13

📋Vendor Advisories

1
Microsoft
Windows Defender Firewall Security Feature Bypass Vulnerability2019-02-12
CVE-2019-0637 — Microsoft Windows vulnerability | cvebase