CVE-2019-1142

5.5MEDIUM

Summary

An elevation of privilege vulnerability exists when the .NET Framework common language runtime (CLR) allows file creation in arbitrary locations, aka '.NET Framework Elevation of Privilege Vulnerability'.

Affected Version(s)

Microsoft .NET Framework 3.5 Windows Server 2012

Microsoft .NET Framework 3.5 Windows Server 2012 (Server Core installation)

Microsoft .NET Framework 3.5 Windows 8.1 for 32-bit systems

References

EPSS Score

0% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database
.