Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-credential-wincred.exe file in %PROGRAMDATA%\DockerDesktop\version-bin\ as a low-privilege user, and then waiting for an admin or service user to authenticate with Docker, restart Docker, or run 'docker login' to force the command
Published Aug 28, 2019 ·Due May 3, 2022
7.8
HIGHCVSS 3.1
EPSS 48.63%
Description
Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-credential-wincred.exe file in %PROGRAMDATA%\DockerDesktop\version-bin\ as a low-privilege user, and then waiting for an admin or service user to authenticate with Docker, restart Docker, or run 'docker login' to force the command.
Affected products
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:N/C:C/I:C/A:C
Date Added
Nov 3, 2021
Patch Due
May 3, 2022
Required Action
Apply updates per vendor instructions.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
ActiveAutomatable
NoTechnical Impact
TotalDecision
n/aAssessed Feb 4, 2025 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 2, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (32 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 2, 2026 | 48.63% (0.48628) | 98.84th | v5 (v2026.06.15) |
| Oct 1, 2026 | 48.63% (0.48628) | 98.84th | v5 (v2026.06.15) |
| Jul 29, 2026 | 31.92% (0.31918) | 98.13th | v5 (v2026.06.15) |
| Jun 15, 2026 | 29.63% (0.29628) | 97.95th | v5 (v2026.06.15) |
| May 23, 2026 | 45.60% (0.45598) | 97.67th | v4 (v2025.03.14) |
| Mar 17, 2026 | 49.32% (0.49322) | 97.75th | v4 (v2025.03.14) |
| Feb 23, 2026 | 46.85% (0.46851) | 97.59th | v4 (v2025.03.14) |
| Nov 21, 2025 | 44.57% (0.44567) | 97.41th | v4 (v2025.03.14) |
| Nov 18, 2025 | 25.53% (0.25526) | 95.88th | v4 (v2025.03.14) |
| Sep 2, 2025 | 43.58% (0.43576) | 97.45th | v4 (v2025.03.14) |
| Aug 16, 2025 | 59.78% (0.59783) | 98.17th | v4 (v2025.03.14) |
| Jul 30, 2025 | 60.83% (0.60829) | 98.21th | v4 (v2025.03.14) |
| Jun 30, 2025 | 63.66% (0.63660) | 98.29th | v4 (v2025.03.14) |
| Jun 8, 2025 | 60.85% (0.60846) | 98.17th | v4 (v2025.03.14) |
| Apr 21, 2025 | 57.88% (0.57879) | 98.00th | v4 (v2025.03.14) |
| Mar 30, 2025 | 55.97% (0.55971) | 97.89th | v4 (v2025.03.14) |
| Mar 29, 2025 | 80.27% (0.80265) | 98.87th | v4 (v2025.03.14) |
| Mar 17, 2025 | 55.97% (0.55971) | 97.87th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.55% (0.00548) | 78.22th | v3 (v2023.03.01) |
| Apr 12, 2024 | 0.63% (0.00633) | 78.78th | v3 (v2023.03.01) |
| Feb 15, 2024 | 0.49% (0.00488) | 75.36th | v3 (v2023.03.01) |
| Nov 23, 2023 | 0.49% (0.00488) | 73.36th | v3 (v2023.03.01) |
| Nov 8, 2023 | 0.44% (0.00441) | 71.91th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.17% (0.00170) | 52.21th | v3 (v2023.03.01) |
| Mar 6, 2023 | 26.38% (0.26382) | 97.09th | v2 (v2022.01.01) |
| Apr 1, 2022 | 26.38% (0.26382) | 96.94th | v2 (v2022.01.01) |
| Feb 4, 2022 | 27.05% (0.27051) | 95.81th | v2 (v2022.01.01) |
| Feb 3, 2022 | 62.81% (0.62809) | 99.32th | v1 |
| Sep 16, 2021 | 62.81% (0.62809) | 99.79th | v1 |
| Sep 14, 2021 | 18.60% (0.18604) | 97.90th | v1 |
| Sep 1, 2021 | 62.81% (0.62809) | 99.80th | v1 |
| Apr 14, 2021 | 62.81% (0.62809) | 0.00th | v1 |
References (4)
- http://packetstormsecurity.com/files/157404/Docker-Credential-Wincred.exe-Privilege-Escalation.html x_refsource_MISCExploitThird Party AdvisoryVDB Entry
- https://lists.apache.org/thread.html/rf1bbc0ea4a9f014cf94df9a12a6477d24a27f52741dbc87f2fd52ff2%40%3Cissues.geode.apache.org%3E mailing-listx_refsource_MLISTMailing List
- https://medium.com/%40morgan.henry.roman/elevation-of-privilege-in-docker-for-windows-2fd8450b478e x_refsource_MISCExploitThird Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15752 government-resourceUS Government Resource
| Link | Providers | Tags |
|---|---|---|
| http://packetstormsecurity.com/files/157404/Docker-Credential-Wincred.exe-Privilege-Escalation.html | x_refsource_MISCExploitThird Party AdvisoryVDB Entry | |
| https://lists.apache.org/thread.html/rf1bbc0ea4a9f014cf94df9a12a6477d24a27f52741dbc87f2fd52ff2%40%3Cissues.geode.apache.org%3E | mailing-listx_refsource_MLISTMailing List | |
| https://medium.com/%40morgan.henry.roman/elevation-of-privilege-in-docker-for-windows-2fd8450b478e | x_refsource_MISCExploitThird Party Advisory | |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15752 | government-resourceUS Government Resource |
Change history (0)
No recorded changes yet.