CVE-2019-1142: Microsoft .NET Framework

Medium severity, CVSS 5.5. EPSS: 1% chance of exploitation in the next 30 days.

An elevation of privilege vulnerability exists when the .NET Framework common language runtime (CLR) allows file creation in arbitrary locations, aka '.NET Framework Elevation of Privilege Vulnerability'.

Affected products

  • Microsoft .NET Framework: version 3.5 only; version 4.7.2 only; version 4.6 only; version 4.6.1 only; version 4.6.2 only; version 4.7 only; …

Published 2019-09-11. Last modified 2026-06-17.