Junglewise Threat Intelligence

CVE-2019-1253: Microsoft Windows AppX Deployment Server Privilege Escalation Vulnerability

CVE-2019-1253 · Severity: critical · CVSS 7.8 · Exploited in the wild · Published 2022-03-15

Technologies: Microsoft Windows, Microsoft Windows Server 2019, Microsoft Windows Server, Microsoft Windows 10. Vendors: Microsoft.

Executive brief

An elevation of privilege vulnerability exists in the Microsoft Windows AppX Deployment Server due to improper handling of junctions. An attacker with local execution privileges can exploit this to gain elevated system permissions.

Affected products

  • Microsoft Windows 10 1703, 1709, 1803, 1809, 1903
  • Microsoft Windows Server 2019
  • Microsoft Windows Server 1803, 1903

Timeline

  • 2022-03-15: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2022-03-15: disclosed
  • 2022-03-15: exploited: Reported as exploited in the wild.

Related threats