Логотип exploitDog
bind:CVE-2019-1449
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-1449

Количество 4

Количество 4

nvd логотип

CVE-2019-1449

почти 6 лет назад

A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and Office LPAC Protected View to escalate privileges to SYSTEM.To exploit this bug, an attacker would have to run a specially crafted file, aka 'Microsoft Office ClickToRun Security Feature Bypass Vulnerability'.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2019-1449

почти 6 лет назад

Microsoft Office ClickToRun Security Feature Bypass Vulnerability

EPSS: Низкий
github логотип

GHSA-hgr7-mfwx-6c5g

больше 3 лет назад

A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and Office LPAC Protected View to escalate privileges to SYSTEM.To exploit this bug, an attacker would have to run a specially crafted file, aka 'Microsoft Office ClickToRun Security Feature Bypass Vulnerability'.

EPSS: Низкий
fstec логотип

BDU:2019-04325

почти 6 лет назад

Уязвимость компонента Click-to-Run (C2R) офисных программ Microsoft Office и Office 365,позволяющая нарушителю повысить свои привилегии

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-1449

A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and Office LPAC Protected View to escalate privileges to SYSTEM.To exploit this bug, an attacker would have to run a specially crafted file, aka 'Microsoft Office ClickToRun Security Feature Bypass Vulnerability'.

CVSS3: 9.8
6%
Низкий
почти 6 лет назад
msrc логотип
CVE-2019-1449

Microsoft Office ClickToRun Security Feature Bypass Vulnerability

6%
Низкий
почти 6 лет назад
github логотип
GHSA-hgr7-mfwx-6c5g

A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and Office LPAC Protected View to escalate privileges to SYSTEM.To exploit this bug, an attacker would have to run a specially crafted file, aka 'Microsoft Office ClickToRun Security Feature Bypass Vulnerability'.

6%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-04325

Уязвимость компонента Click-to-Run (C2R) офисных программ Microsoft Office и Office 365,позволяющая нарушителю повысить свои привилегии

CVSS3: 9.8
6%
Низкий
почти 6 лет назад

Уязвимостей на страницу