CVE-2019-19470
30.12.2019, 18:15
Unsafe usage of .NET deserialization in Named Pipe message processing allows privilege escalation to NT AUTHORITY\SYSTEM for a local attacker. Affected product is TinyWall, all versions up to and including 2.1.12. Fixed in version 2.1.13.Enginsight
Vendor | Product | Version |
---|---|---|
tinywall | tinywall | 𝑥 < 2.1.13 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References