An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would require unprivileged code execution on a victim system. The security update addresses the vulnerability by correctly validating file operations.
History

Tue, 20 May 2025 18:00:00 +0000

Type Values Removed Values Added
Description An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations, aka 'Task Scheduler Elevation of Privilege Vulnerability'. An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would require unprivileged code execution on a victim system. The security update addresses the vulnerability by correctly validating file operations.
Title Task Scheduler Elevation of Privilege Vulnerability
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C'}


Thu, 19 Sep 2024 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft windows 10 1507
Microsoft windows 10 1607
Microsoft windows 10 1703
Microsoft windows 10 1709
Microsoft windows 10 1803
Microsoft windows 10 1809
Microsoft windows 10 1903
Microsoft windows Server 1803
Microsoft windows Server 1903
CPEs cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_1803:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:*:*
Vendors & Products Microsoft windows 10 1507
Microsoft windows 10 1607
Microsoft windows 10 1703
Microsoft windows 10 1709
Microsoft windows 10 1803
Microsoft windows 10 1809
Microsoft windows 10 1903
Microsoft windows Server 1803
Microsoft windows Server 1903
Metrics cvssV3_0

{'score': 7.8, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Wed, 18 Sep 2024 19:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

kev

{'dateAdded': '2024-09-18'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published: 2019-06-12T13:49:41

Updated: 2025-05-20T17:50:22.287Z

Reserved: 2018-11-26T00:00:00

Link: CVE-2019-1069

cve-icon Vulnrichment

Updated: 2024-08-04T18:06:31.512Z

cve-icon NVD

Status : Analyzed

Published: 2019-06-12T14:29:04.337

Modified: 2025-05-21T18:33:02.230

Link: CVE-2019-1069

cve-icon Redhat

No data.