Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-0571. PoCs published by Google Security Research.
AI-analyzed exploit summary The writeup describes a security feature bypass in the Windows Data Sharing Service (DSSVC) where UNC path checks can be circumvented using the \??\UNC\ format, potentially facilitating privilege escalation. The analysis includes technical details on how the bypass works and its implications, though the actual PoC is hosted externally.
Description
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka "Windows Data Sharing Service Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers. This CVE ID is unique from CVE-2019-0572, CVE-2019-0573, CVE-2019-0574.
Exploits (1)
The writeup describes a security feature bypass in the Windows Data Sharing Service (DSSVC) where UNC path checks can be circumvented using the \??\UNC\ format, potentially facilitating privilege escalation. The analysis includes technical details on how the bypass works and its implications, though the actual PoC is hosted externally.
References (3)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H