CVE-2019-1219Sensitive Information Exposure in Microsoft Windows

Severity
5.5MEDIUMNVD
EPSS
1.0%
top 23.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 11
Latest updateMay 24

Description

An information disclosure vulnerability exists when the Windows Transaction Manager improperly handles objects in memory, aka 'Windows Transaction Manager Information Disclosure Vulnerability'.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages23 packages

CVEListV5microsoft/windows20 versions+19
NVDmicrosoft/windowsr2, 1803, 1903+2

Patches

🔴Vulnerability Details

1
GHSA
GHSA-w24q-26j3-q932: An information disclosure vulnerability exists when the Windows Transaction Manager improperly handles objects in memory, aka 'Windows Transaction Man2022-05-24

📋Vendor Advisories

1
Microsoft
Windows Transaction Manager Information Disclosure Vulnerability2019-09-10

🕵️Threat Intelligence

1
Zscaler
Zscaler found Multiple Security Vulnerabilities | 09-10-2019
CVE-2019-1219 — Sensitive Information Exposure | cvebase