CISA Known Exploited Vulnerability

CVE-2019-0841 Ransomware

Microsoft · Windows

Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-59
Ransomware Known

CISA description

A privilege escalation vulnerability exists when Windows AppXSVC improperly handles hard links. An attacker who successfully exploited this vulnerability could run processes in an elevated context.

Required action

Apply updates per vendor instructions.