🛡 CVE-2019-0803
Microsoft Win32k Privilege Escalation Vulnerability
Microsoft Win32k
Ransomware use
—
CISA KEV
EPSS
45.2%
Elevated · 99th pct
Added to KEV
2021-11-03
CISA
Remediate by
2022-05-03
⚠ OVERDUE
CWE
—
weakness
📈 EPSS exploit probability
45.2%
FIRST EPSS — 30-day probability of exploitation in the wild · band Elevated · higher than 99% of all scored CVEs
⚠ KEV remediation overdue
CISA required federal remediation by 2022-05-03. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.
📄 Description
Microsoft Win32k contains an unspecified vulnerability due to it failing to properly handle objects in memory causing privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.
🔗 External references & OSINT
🔄 Internal pivots & actions
🛡 Add to case
🧩 Advanced Capabilities
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron