CVE-2019-1414

Description

An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka Visual Studio Code Elevation of Privilege Vulnerability.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.526

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Microsoft Visual Studio Code (x64) 1.9.1Windows
Multiple vulnerabilities affected in Microsoft Visual Studio Code 1.9.1Windows
Vulnerabilities CVE-2019-1414 are affected in Microsoft Visual Studio Code (User Based) 1.38.1Windows
Multiple vulnerabilities affected in Microsoft Visual Studio Code 1.9.1 (For Ubuntu)Linux
Multiple vulnerabilities affected in Microsoft Visual Studio Code 1.9.1 (For Debian)Linux
Multiple vulnerabilities affected in Microsoft Visual Studio Code 1.9.1 (For Centos)Linux
Multiple vulnerabilities affected in Microsoft Visual Studio Code 1.9.1 (For RedHat)Linux
Multiple vulnerabilities affected in Microsoft Visual Studio Code 1.9.1 (For Suse)Linux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-343136Microsoft Visual Studio Code (x64) (1.95.3)
PATCH-333564Microsoft Visual Studio Code (1.83.1)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234