项目作者: sgabe

项目描述 :
AppXSvc Arbitrary File Overwrite DoS
高级语言: C++
项目地址: git://github.com/sgabe/CVE-2019-1476.git
创建时间: 2019-12-05T21:00:16Z
项目社区:https://github.com/sgabe/CVE-2019-1476

开源协议:

下载


CVE-2019-1476

AppXSvc Arbitrary File Overwrite DoS

I have independently reported this vulnerability to MSRC as part of my research inspired by CVE-2019-0841 originally reported by Nabeel Ahmed. This vulnerability allows a regular user to overwrite arbitrary files. However, the attacker’s capabilities are limited, due to the lack of control over the file’s content, hence it’s most likely usage is in various denial of service scenarios. See Arbitrary file overwrite in AppXSvc for more information.

Video PoC