#VU17645 Security restrictions bypass in Windows and Windows Server - CVE-2019-0637 

 

#VU17645 Security restrictions bypass in Windows and Windows Server - CVE-2019-0637

Published: February 13, 2019


Vulnerability identifier: #VU17645
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2019-0637
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
Windows
Windows Server
Software vendor:
Microsoft

Description

The vulnerability allows a remote attacker to bypass certain security restrictions.

The vulnerability exists due to Windows Defender Firewall incorrectly applies firewall profiles to cellular network connections, when Windows is connected to both an ethernet and a cellular network. A remote attacker can bypass configured firewall policies and perform unauthorized actions against the affected system.

Note, this vulnerability cannot be triggered remotely.


Remediation

Install updates from vendor's website.

External links