Beveiligingsadvies

CVE-2019-1449

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-11-12 18:53:19
Laatst bijgewerkt 2024-08-04 18:20:27
Toegewezen door microsoft
CVSS-score geen score
Status PUBLISHED

Beschrijving

A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and Office LPAC Protected View to escalate privileges to SYSTEM.To exploit this bug, an attacker would have to run a specially crafted file, aka 'Microsoft Office ClickToRun Security Feature Bypass Vulnerability'.