CVE-2019-0880: Microsoft Windows Privilege Escalation Vulnerability
A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 Elevation of Privilege Vulnerability'.
Other sources
A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls. An attacker who successfully exploited the vulnerability could elevate privileges on an affected system from low-integrity to medium-integrity.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-0880?
CVE-2019-0880 has a severity rating of important in Microsoft Security Advisories.
How do I fix CVE-2019-0880?
To fix CVE-2019-0880, apply the latest security updates provided by Microsoft for affected versions of Windows.
What systems are affected by CVE-2019-0880?
CVE-2019-0880 affects various versions of Microsoft Windows, including Windows 10, Windows 8.1, and Windows Server 2012 through 2019.
What type of vulnerability is CVE-2019-0880?
CVE-2019-0880 is classified as a local elevation of privilege vulnerability.
Can CVE-2019-0880 be exploited remotely?
No, CVE-2019-0880 requires local access to the system for exploitation.