Tracker / CVE-2019-1161
CVE-2019-1161
High 7.1
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations. To exploit the vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted command that could exploit the vulnerability and delete protected files on an affected system once MpSigStub.exe ran again. The update addresses the vulnerability and blocks the arbitrary deletion.
Affected products and versions
| microsoft | forefront_endpoint_protection_2010 |
|---|---|
| microsoft | security_essentials |
| microsoft | system_center_endpoint_protection |
| microsoft | windows_defender |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.