CVE-2019-1267
published 2019-09-11CVE-2019-1267: An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable to…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
1.18%
64.3th percentile
An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable to symbolic link and hard link attacks, aka 'Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability'.
Affected
57 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
vendor_msrc7.3HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability
vendor_msrc·2019-09-10·CVSS 7.3
CVE-2019-1267 [HIGH] Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability
Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability
Description: An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable to symbolic link and hard link attacks. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could then install programs; view, change or delete data.
To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system.
The security update addresses the vulnerability by writing the file to a location with an appropriate Access Control List.
Microsoft
GHSA
GHSA-rw23-mpwm-7vmh: An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable t
ghsa_unreviewed·2022-05-24
CVE-2019-1267 [HIGH] CWE-269 GHSA-rw23-mpwm-7vmh: An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable t
An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable to symbolic link and hard link attacks, aka 'Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability'.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-9797 Mozilla: Cross-origin theft of images with createImageBitmap
bugzilla·2019-05-22·CVSS 5.3
CVE-2019-9797 [MEDIUM] CVE-2019-9797 Mozilla: Cross-origin theft of images with createImageBitmap
CVE-2019-9797 Mozilla: Cross-origin theft of images with createImageBitmap
Cross-origin images can be read in violation of the same-origin policy by exporting an image after using `createImageBitmap` to read the image and then rendering the resulting bitmap image within a `canvas` element.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/#CVE-2019-9797
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: AaylaSecura1138
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:1265 https://access.redhat.com/errata/RHSA-2019:1265
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1267 https://access.redhat.com/errata/RHSA-2019:1267
---
Bugzilla
CVE-2019-9819 Mozilla: Compartment mismatch with fetch API
bugzilla·2019-05-22·CVSS 9.8
CVE-2019-9819 [CRITICAL] CVE-2019-9819 Mozilla: Compartment mismatch with fetch API
CVE-2019-9819 Mozilla: Compartment mismatch with fetch API
A vulnerability where a JavaScript compartment mismatch can occur while working with the `fetch` API, resulting in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/#CVE-2019-9819
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Nils
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:1265 https://access.redhat.com/errata/RHSA-2019:1265
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1267 https://access.redhat.com/errata/RHSA-2019:1267
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-
Bugzilla
CVE-2019-9817 Mozilla: Stealing of cross-domain images using canvas
bugzilla·2019-05-22·CVSS 5.3
CVE-2019-9817 [MEDIUM] CVE-2019-9817 Mozilla: Stealing of cross-domain images using canvas
CVE-2019-9817 Mozilla: Stealing of cross-domain images using canvas
Images from a different domain can be read using a canvas object in some circumstances. This could be used to steal image data from a different site in violation of same-origin policy.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/#CVE-2019-9817
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Luật Nguyễn
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:1265 https://access.redhat.com/errata/RHSA-2019:1265
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1267 https://access.redhat.com/errata/RHSA-2019:1267
---
This issue has been addressed in the follo
Bugzilla
CVE-2019-11692 Mozilla: Use-after-free removing listeners in the event listener manager
bugzilla·2019-05-22·CVSS 9.8
CVE-2019-11692 [CRITICAL] CVE-2019-11692 Mozilla: Use-after-free removing listeners in the event listener manager
CVE-2019-11692 Mozilla: Use-after-free removing listeners in the event listener manager
A use-after-free vulnerability can occur when listeners are removed from the event listener manager while still in use, resulting in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/#CVE-2019-11692
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Nils
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:1265 https://access.redhat.com/errata/RHSA-2019:1265
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1267 https://access.redhat.com/errata/RHSA-2019:1267
---
This issue has been addressed in the following
Bugzilla
CVE-2019-9820 Mozilla: Use-after-free of ChromeEventHandler by DocShell
bugzilla·2019-05-22·CVSS 9.8
CVE-2019-9820 [CRITICAL] CVE-2019-9820 Mozilla: Use-after-free of ChromeEventHandler by DocShell
CVE-2019-9820 Mozilla: Use-after-free of ChromeEventHandler by DocShell
A use-after-free vulnerability can occur in the chrome event handler when it is freed while still in use. This results in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/#CVE-2019-9820
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Nils
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:1265 https://access.redhat.com/errata/RHSA-2019:1265
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1267 https://access.redhat.com/errata/RHSA-2019:1267
---
This issue has been addressed in the following products:
Red Hat Enterpris
Bugzilla
CVE-2019-11691 Mozilla: Use-after-free in XMLHttpRequest
bugzilla·2019-05-22·CVSS 9.8
CVE-2019-11691 [CRITICAL] CVE-2019-11691 Mozilla: Use-after-free in XMLHttpRequest
CVE-2019-11691 Mozilla: Use-after-free in XMLHttpRequest
A use-after-free vulnerability can occur when working with `XMLHttpRequest` (XHR) in an event loop, causing the XHR main thread to be called after it has been freed. This results in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/#CVE-2019-11691
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Nils
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:1265 https://access.redhat.com/errata/RHSA-2019:1265
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1267 https://access.redhat.com/errata/RHSA-2019:1267
---
This issue has been addressed
2019-09-11
Published