CVE-2019-1405
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.
- Affected products
- Windows, Windows Universal Plug/Play (Upnp) Service
- Microsoft Windows 10 1507
- All versions
- Microsoft Windows 10 1607
- All versions
- Microsoft Windows 10 1709
- All versions
- Microsoft Windows 10 1803
- All versions
- Microsoft Windows 10 1809
- All versions
- Microsoft Windows 10 1903
- All versions
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 29.9% (98th percentile)
- Weakness
- CWE-269
- NVD status
- Analyzed
- Published
- 2019-11-12
CVE-2019-1405 at NVD
29 known exploits for CVE-2019-1405
Proof-of-concept code and exploit modules indexed by Sploitus
dazzleUP
COMahawk
patch-checker
Exploit for CVE-2019-1322
Exploit for CVE-2013-0422
Exploit for CVE-2019-1322
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
Exploit for Deserialization of Untrusted Data in Redhat Jboss_Enterprise_Application_Platform
Exploit for CVE-2019-1322
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
dazzleUP - A Tool That Detects The Privilege Escalation Vulnerabilities Caused By Misconfigurations And Missing Updates In The Windows OS
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
Exploit for Deserialization of Untrusted Data in Redhat Jboss_Enterprise_Application_Platform
Exploit for CVE-2013-0422
Exploit for CVE-2013-0422
Microsoft UPnP - Local Privilege Elevation (Metasploit)
Microsoft UPnP Local Privilege Elevation Exploit
Microsoft UPnP Local Privilege Elevation
Microsoft Windows 10 Build 1803 < 1903 - (COMahawk) Local Privilege Escalation Exploit
Microsoft Windows 10 Build 1803 1903 - COMahawk Local Privilege Escalation
Microsoft Windows 10 Build 1803 < 1903 - 'COMahawk' Local Privilege Escalation
COMahawk
Microsoft UPnP Local Privilege Elevation Vulnerability