Vulnerability Intelligence

🛡 CVE-2019-0803

Microsoft Win32k Privilege Escalation Vulnerability
Microsoft Win32k

Ransomware use

CISA KEV

EPSS

45.2%
Elevated · 99th pct

Added to KEV

2021-11-03
CISA

Remediate by

2022-05-03
⚠ OVERDUE

CWE

weakness

📈 EPSS exploit probability

45.2%
FIRST EPSS — 30-day probability of exploitation in the wild · band Elevated · higher than 99% of all scored CVEs

⚠ KEV remediation overdue

CISA required federal remediation by 2022-05-03. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.

📄 Description

Microsoft Win32k contains an unspecified vulnerability due to it failing to properly handle objects in memory causing privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.

🛡 Add to case

Attach CVE-2019-0803 (Vulnerability / CVE) and pull all linked entities:
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php