CVE-2019-0836
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0731, CVE-2019-0796, CVE-2019-0805, CVE-2019-0841.
- Affected products
- Windows
- Microsoft Windows 10
- All versions
- Microsoft Windows 7
- All versions
- Microsoft Windows 8.1
- All versions
- Microsoft Windows Rt 8.1
- All versions
- Microsoft Windows Server 2008
- All versions
- Microsoft Windows Server 2012
- All versions
- CVSS 3.0
- 7.8 HIGH
- EPSS
- 4.3% (90th percentile)
- Weakness
- CWE-367
- NVD status
- Modified
- Published
- 2019-04-09
CVE-2019-0836 at NVD
5 known exploits for CVE-2019-0836
Proof-of-concept code and exploit modules indexed by Sploitus
Watson - Enumerate Missing KBs And Suggest Exploits For Useful Privilege Escalation Vulnerabilities
PatchChecker - Web-based Check For Windows Privesc Vulnerabilities
dazzleUP - A Tool That Detects The Privilege Escalation Vulnerabilities Caused By Misconfigurations And Missing Updates In The Windows OS
Microsoft Windows 10 1809 - LUAFV PostLuafvPostReadWrite SECTION_OBJECT_POINTERS Race Condition
Microsoft Windows 10 1809 - LUAFV PostLuafvPostReadWrite SECTION_OBJECT_POINTERS Race Condition Privilege Escalation