CISA Known Exploited Vulnerability

CVE-2019-1315 Ransomware

Microsoft · Windows

Microsoft Windows Error Reporting Manager Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-59
Ransomware Known

CISA description

A privilege escalation vulnerability exists when Windows Error Reporting manager improperly handles hard links. An attacker who successfully exploited this vulnerability could overwrite a targeted file leading to an elevated status.

Required action

Apply updates per vendor instructions.