#VU18445 Input validation error in Windows and Windows Server - CVE-2019-0863
Published: May 14, 2019 / Updated: November 20, 2020
Windows
Windows Server
Microsoft
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to the way Windows Error Reporting (WER) handles files. A local user can create a specially crafted WER file and execute arbitrary code on the system in kernel mode.
Note: this vulnerability is being actively exploited in the wild.