CVE-2019-1091 — Sensitive Information Exposure in Microsoft Windows
Severity
5.5MEDIUMNVD
EPSS
1.2%
top 21.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 15
Latest updateMay 24
Description
An information disclosure vulnerability exists when Unistore.dll fails to properly handle objects in memory, aka 'Microsoft unistore.dll Information Disclosure Vulnerability'.
CVSS vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6
Affected Packages18 packages
Patches
🔴Vulnerability Details
1📋Vendor Advisories
1💬Community
1Bugzilla▶
CVE-2019-12387 python-twisted: Improper neutralization of CRLF characters in URIs and HTTP methods↗2019-06-12