{
  "id": "CVE-2019-1069",
  "url": "https://spydr.io/cve/CVE-2019-1069",
  "published": "2019-06-12T14:29:04.337Z",
  "modified": "2026-08-12T05:17:22.517Z",
  "score": 7.8,
  "severity": "high",
  "cvss_version": "3.1",
  "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
  "score_source": "NVD",
  "epss": 0.06117,
  "epss_percentile": 0.93249,
  "exploited": true,
  "kev": {
    "added": "2022-03-15",
    "due": "2022-04-05",
    "action": "Apply updates per vendor instructions.",
    "ransomware": "Known",
    "name": "Microsoft Task Scheduler Privilege Escalation Vulnerability",
    "notes": "https://nvd.nist.gov/vuln/detail/CVE-2019-1069"
  },
  "ssvc_exploitation": "active",
  "vendors": [
    "Microsoft"
  ],
  "products": [
    "Microsoft Windows 10 Version 1703",
    "Microsoft Windows 10 Version 1803",
    "Microsoft Windows Server, version 1803 (Server Core Installation)",
    "Microsoft Windows 10 Version 1809",
    "Microsoft Windows Server 2019",
    "Microsoft Windows Server 2019 (Server Core installation)",
    "Microsoft Windows 10 Version 1709 for 32-bit Systems",
    "Microsoft Windows 10 Version 1709",
    "Microsoft Windows 10 Version 1903 for 32-bit Systems",
    "Microsoft Windows 10 Version 1903 for x64-based Systems",
    "Microsoft Windows 10 Version 1903 for ARM64-based Systems",
    "Microsoft Windows Server, version 1903 (Server Core installation)",
    "Microsoft Windows 10 Version 1507",
    "Microsoft Windows 10 Version 1607",
    "Microsoft Windows Server 2016",
    "Microsoft Windows Server 2016 (Server Core installation)",
    "microsoft windows_10"
  ],
  "cwes": [
    "CWE-59"
  ],
  "description": "An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would require unprivileged code execution on a victim system. The security update addresses the vulnerability by correctly validating file operations.",
  "status": "Analyzed",
  "score_type": "Primary",
  "scores": {
    "cvss_v40": null,
    "cvss_v31": 7.8,
    "cvss_v30": null
  },
  "references": [
    {
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2019-1069",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ]
    },
    {
      "url": "https://blog.0patch.com/2019/06/another-task-scheduler-0day-another.html",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ]
    },
    {
      "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1069",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ]
    },
    {
      "url": "https://www.kb.cert.org/vuls/id/119704",
      "tags": [
        "Third Party Advisory",
        "US Government Resource"
      ]
    },
    {
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-1069",
      "tags": [
        "US Government Resource"
      ]
    }
  ],
  "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2019-1069",
  "covered_in": [],
  "attribution": [
    {
      "source": "NVD",
      "url": "https://nvd.nist.gov",
      "notice": "This product uses data from the NVD API but is not endorsed or certified by the NVD."
    },
    {
      "source": "CISA KEV",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "notice": "Known exploited vulnerabilities from the CISA KEV catalog."
    },
    {
      "source": "FIRST EPSS",
      "url": "https://www.first.org/epss",
      "notice": "Exploit prediction scores from FIRST EPSS."
    }
  ]
}
