CyberSec.Space Logo
Back to CVE Browser

CVE-2019-1405

Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score96.9460%
EPSS Percentile97.08th
PublishedNov 12, 2019
Last ModifiedOct 29, 2025

Vulnerability Description

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.

Affected Platforms (CPE)

πŸ’»
Microsoft

Windows 10 1507

All versions
πŸ’»
Microsoft

Windows 10 1507

All versions
πŸ’»
Microsoft

Windows 10 1607

All versions
πŸ’»
Microsoft

Windows 10 1607

All versions
πŸ’»
Microsoft

Windows 10 1709

All versions
πŸ’»
Microsoft

Windows 10 1709

All versions
πŸ’»
Microsoft

Windows 10 1709

All versions
πŸ’»
Microsoft

Windows 10 1803

All versions
πŸ’»
Microsoft

Windows 10 1803

All versions
πŸ’»
Microsoft

Windows 10 1803

All versions
πŸ’»
Microsoft

Windows 10 1809

All versions
πŸ’»
Microsoft

Windows 10 1809

All versions
πŸ’»
Microsoft

Windows 10 1809

All versions
πŸ’»
Microsoft

Windows 10 1903

All versions
πŸ’»
Microsoft

Windows 10 1903

All versions
πŸ’»
Microsoft

Windows 10 1903

All versions
πŸ’»
Microsoft

Windows 7

All versions
πŸ’»
Microsoft

Windows 7

All versions
πŸ’»
Microsoft

Windows 8.1

All versions
πŸ’»
Microsoft

Windows Rt 8.1

All versions
πŸ’»
Microsoft

Windows Server 1803

All versions
πŸ’»
Microsoft

Windows Server 1903

All versions
πŸ’»
Microsoft

Windows Server 2008

All versions
πŸ’»
Microsoft

Windows Server 2008

= r2
πŸ’»
Microsoft

Windows Server 2008

= r2
πŸ’»
Microsoft

Windows Server 2012

All versions
πŸ’»
Microsoft

Windows Server 2012

= r2
πŸ’»
Microsoft

Windows Server 2016

All versions
πŸ’»
Microsoft

Windows Server 2019

All versions

References & Advisories

Related Vulnerabilities