Количество 4
Количество 4

CVE-2019-0986
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks. An attacker who successfully exploited this vulnerability could delete files and folders in an elevated context. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and delete files or folders of their choosing. The security update addresses the vulnerability by correcting how the Windows User Profile Service handles symlinks.

CVE-2019-0986
Windows User Profile Service Elevation of Privilege Vulnerability
GHSA-c792-8wx7-j3v9
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.

BDU:2019-02482
Уязвимость службы User Profile Service операционных систем Windows, позволяющая нарушителю повысить свои привилегии
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2019-0986 An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks. An attacker who successfully exploited this vulnerability could delete files and folders in an elevated context. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and delete files or folders of their choosing. The security update addresses the vulnerability by correcting how the Windows User Profile Service handles symlinks. | CVSS3: 6.3 | 4% Низкий | около 6 лет назад |
![]() | CVE-2019-0986 Windows User Profile Service Elevation of Privilege Vulnerability | CVSS3: 6.3 | 4% Низкий | около 6 лет назад |
GHSA-c792-8wx7-j3v9 An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'. | CVSS3: 7.1 | 4% Низкий | около 3 лет назад | |
![]() | BDU:2019-02482 Уязвимость службы User Profile Service операционных систем Windows, позволяющая нарушителю повысить свои привилегии | CVSS3: 7.1 | 4% Низкий | около 6 лет назад |
Уязвимостей на страницу