CyberSec.Space Logo
Back to CVE Browser

CVE-2019-0903

Known Exploited (CISA KEV)HIGH
8.8
CVSS Severity Score
EPSS Score36.7600%
EPSS Percentile87.48th
PublishedMay 16, 2019
Last ModifiedOct 29, 2025

Vulnerability Description

A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Remote Code Execution Vulnerability'.

Affected Platforms (CPE)

πŸ’»
Microsoft

Windows 10 1507

All versions
πŸ’»
Microsoft

Windows 10 1507

All versions
πŸ’»
Microsoft

Windows 10 1607

All versions
πŸ’»
Microsoft

Windows 10 1607

All versions
πŸ’»
Microsoft

Windows 10 1703

All versions
πŸ’»
Microsoft

Windows 10 1703

All versions
πŸ’»
Microsoft

Windows 10 1709

All versions
πŸ’»
Microsoft

Windows 10 1709

All versions
πŸ’»
Microsoft

Windows 10 1709

All versions
πŸ’»
Microsoft

Windows 10 1803

All versions
πŸ’»
Microsoft

Windows 10 1803

All versions
πŸ’»
Microsoft

Windows 10 1803

All versions
πŸ’»
Microsoft

Windows 10 1809

All versions
πŸ’»
Microsoft

Windows 10 1809

All versions
πŸ’»
Microsoft

Windows 10 1809

All versions
πŸ’»
Microsoft

Windows 10 1903

All versions
πŸ’»
Microsoft

Windows 10 1903

All versions
πŸ’»
Microsoft

Windows 10 1903

All versions
πŸ’»
Microsoft

Windows 7

All versions
πŸ’»
Microsoft

Windows 8.1

All versions
πŸ’»
Microsoft

Windows Rt 8.1

All versions
πŸ’»
Microsoft

Windows Server 1803

All versions
πŸ’»
Microsoft

Windows Server 1903

All versions
πŸ’»
Microsoft

Windows Server 2008

All versions
πŸ’»
Microsoft

Windows Server 2008

= r2
πŸ’»
Microsoft

Windows Server 2008

= r2
πŸ’»
Microsoft

Windows Server 2012

All versions
πŸ’»
Microsoft

Windows Server 2012

= r2
πŸ’»
Microsoft

Windows Server 2016

All versions
πŸ’»
Microsoft

Windows Server 2019

All versions

References & Advisories

Related Vulnerabilities