High severity7.8NVD Advisory· Published Oct 10, 2019· Updated Jun 17, 2026
CVE-2019-1378
CVE-2019-1378
Description
An elevation of privilege vulnerability exists in Windows 10 Update Assistant in the way it handles permissions.A locally authenticated attacker could run arbitrary code with elevated system privileges, aka 'Windows 10 Update Assistant Elevation of Privilege Vulnerability'.
Affected products
3cpe:2.3:a:microsoft:windows_10_update_assistant:-:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:microsoft:windows_10_update_assistant:-:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1378nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.