Language:
Severity: Critical
ID: 129724
File Name: smb_nt_ms19_oct_4520008.nasl
Version: 1.15
Type: local
Agent: windows
Family: Windows : Microsoft Bulletins
Published: 10/8/2019
Updated: 3/8/2023
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus
Risk Factor: High
Score: 8.9
Risk Factor: High
Base Score: 9.3
Temporal Score: 8.1
Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2019-1359
Risk Factor: Critical
Base Score: 9.9
Temporal Score: 9.5
Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C
CVSS Score Source: CVE-2019-1365
CPE: cpe:/o:microsoft:windows, cpe:/a:microsoft:edge
Required KB Items: SMB/MS_Bulletin_Checks/Possible
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 10/8/2019
Vulnerability Publication Date: 10/8/2019
CISA Known Exploited Vulnerability Due Dates: 4/5/2022
CANVAS (CANVAS)
Core Impact
Metasploit (Microsoft UPnP Local Privilege Elevation Vulnerability)
CVE: CVE-2019-0608, CVE-2019-1060, CVE-2019-1166, CVE-2019-1230, CVE-2019-1238, CVE-2019-1307, CVE-2019-1308, CVE-2019-1311, CVE-2019-1315, CVE-2019-1316, CVE-2019-1317, CVE-2019-1318, CVE-2019-1319, CVE-2019-1320, CVE-2019-1321, CVE-2019-1322, CVE-2019-1325, CVE-2019-1326, CVE-2019-1333, CVE-2019-1334, CVE-2019-1335, CVE-2019-1339, CVE-2019-1340, CVE-2019-1341, CVE-2019-1342, CVE-2019-1343, CVE-2019-1344, CVE-2019-1345, CVE-2019-1346, CVE-2019-1347, CVE-2019-1357, CVE-2019-1358, CVE-2019-1359, CVE-2019-1365, CVE-2019-1366, CVE-2019-1368, CVE-2019-1371
MSFT: MS19-4520008
MSKB: 4520008