VYPR
High severity7.8NVD Advisory· Published Dec 10, 2019· Updated Jun 17, 2026

CVE-2019-1478

CVE-2019-1478

Description

An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Server Elevation of Privilege Vulnerability'.

Affected products

8
  • cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:itanium:*
    • cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*
    • cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*
  • Microsoft/Windowsllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: 7 for 32-bit Systems Service Pack 1
  • Range: 2008 for 32-bit Systems Service Pack 2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.