CVE-2019-1161
Microsoft Defender Elevation of Privilege Vulnerability
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.
To exploit the vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted command that could exploit the vulnerability and delete protected files on an affected system once MpSigStub.exe ran again.
The update addresses the vulnerability and blocks the arbitrary deletion.
Produtos afetados
Microsoft · Microsoft Forefront Endpoint Protection 2010Microsoft · Microsoft Security EssentialsMicrosoft · Microsoft System Center 2012 Endpoint ProtectionMicrosoft · Microsoft System Center 2012 R2 Endpoint ProtectionMicrosoft · Microsoft System Center Endpoint ProtectionMicrosoft · Windows DefenderQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →