cbcvebase.
CVE-2019-1167
published 2019-07-19

CVE-2019-1167: A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement, aka…

PriorityP417medium4.1CVSS 3.0
AVLACHPRHUINSUCHINAN
EPSS
1.10%
61.8th percentile
A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement, aka 'Windows Defender Application Control Security Feature Bypass Vulnerability'.

Affected

4 ranges
VendorProductVersion rangeFixed in
microsoftpowershell_core
microsoftpowershell_core
msrcpowershell_core_6.1
msrcpowershell_core_6.2

CVSS provenance

nvdv3.04.1MEDIUMCVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
ghsa4.1MEDIUM
osv4.1MEDIUM
vendor_msrc4.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.