CVE-2019-0631: High severity powershell core vulnerability
A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security Feature Bypass Vulnerability'. This CVE ID is unique from CVE-2019-0627, CVE-2019-0632.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-0631?
CVE-2019-0631 is a security feature bypass vulnerability in Windows that could allow an attacker to bypass Device Guard.
How severe is CVE-2019-0631?
CVE-2019-0631 has a severity value of 7.8 (high).
Which software products are affected by CVE-2019-0631?
The affected software products include Microsoft Powershell Core versions 6.1 and 6.2, as well as various versions of Microsoft Windows 10 and Windows Server 2016/2019.
How can an attacker exploit CVE-2019-0631?
By exploiting CVE-2019-0631, an attacker can bypass Device Guard, potentially allowing them to execute malicious code.
Is there a fix available for CVE-2019-0631?
Yes, Microsoft has released a security advisory with guidance on how to mitigate the vulnerability. Please refer to the provided references for more information.