Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-0573. PoCs published by Google Security Research.
AI-analyzed exploit summary The exploit abuses the DSOpenSharedFile method in the Data Sharing Service to delete arbitrary files by leveraging the FILE_FLAG_DELETE_ON_CLOSE flag, bypassing permission checks and symlink verification. It requires user-level read access to the target file and runs as SYSTEM to achieve elevation of privilege.
Description
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka "Windows Data Sharing Service Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers. This CVE ID is unique from CVE-2019-0571, CVE-2019-0572, CVE-2019-0574.
Exploits (1)
The exploit abuses the DSOpenSharedFile method in the Data Sharing Service to delete arbitrary files by leveraging the FILE_FLAG_DELETE_ON_CLOSE flag, bypassing permission checks and symlink verification. It requires user-level read access to the target file and runs as SYSTEM to achieve elevation of privilege.
References (3)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H