CVE-2019-1405

Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability

A privilege escalation vulnerability exists when the Windows UPnP service improperly allows COM object creation. Vendor/Product: Microsoft Windows. Added to CISA KEV 2022-03-15; required action: Apply updates per vendor instructions.

Category: Vulnerability, Known Exploited