CVE Database · CVE-2019-1132
CVSS v3.1
7.8
EPSS
9.79%
Published
Jul 15, 2019
Modified
Oct 29, 2025
CISA Known Exploited Vulnerability
Added: 2022-03-15 · Due: 2022-04-05
Apply updates per vendor instructions.
Public PoC / Exploit (4)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HAffected Products (4)
References (3)