Количество 4
Количество 4
CVE-2020-1110
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application to take control of an affected system. The update addresses the vulnerability by correcting how the Windows Update Stack handles objects in memory.
CVE-2020-1110
Windows Update Stack Elevation of Privilege Vulnerability
GHSA-7598-j62g-mc28
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1109.
BDU:2020-02474
Уязвимость компонента Windows Update Stack операционных систем Windows, позволяющая нарушителю повысить свои привилегии или выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-1110 An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application to take control of an affected system. The update addresses the vulnerability by correcting how the Windows Update Stack handles objects in memory. | CVSS3: 7.8 | 1% Низкий | больше 6 лет назад | |
CVE-2020-1110 Windows Update Stack Elevation of Privilege Vulnerability | CVSS3: 7.8 | 1% Низкий | больше 6 лет назад | |
GHSA-7598-j62g-mc28 An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1109. | CVSS3: 7.8 | 1% Низкий | больше 4 лет назад | |
BDU:2020-02474 Уязвимость компонента Windows Update Stack операционных систем Windows, позволяющая нарушителю повысить свои привилегии или выполнить произвольный код | CVSS3: 7.8 | 1% Низкий | больше 6 лет назад |
Уязвимостей на страницу