Remote Code Execution Vulnerability in Microsoft Windows Jet Database Engine
CVE-2019-0581
7.8HIGH
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 8 January 2019
Summary
A remote code execution vulnerability exists in the Windows Jet Database Engine due to improper handling of objects in memory. An attacker can exploit this vulnerability to execute arbitrary code on the target system if the user opens a specially crafted file. This affects multiple versions of Microsoft Windows, indicating a significant risk to systems that rely on the Jet Database Engine for database management. It is crucial for users and administrators to apply the relevant patches and updates to mitigate potential exploitation of this vulnerability.
Affected Version(s)
Windows 10 32-bit Systems
Windows 10 Version 1607 for 32-bit Systems
Windows 10 Version 1607 for x64-based Systems
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved