CVE-2019-0903
Act now ● On CISA KEV — actively exploited
Actively exploited — on the CISA KEV list.
CVSS base
—
EPSS — probability of exploitation (30 days)
21.7%
97.5th percentile
CISA KEV
Listed
Added 2022-03-25 · patch by 2022-04-15
Weakness / dates
—
Published — · modified —
Description
A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory. An attacker who successfully exploited this vulnerability could take control of the affected system.