Логотип exploitDog
bind:CVE-2020-16914
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-16914

Количество 4

Количество 4

nvd логотип

CVE-2020-16914

почти 5 лет назад

<p>An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, allowing an attacker to retrieve information from a targeted system. By itself, the information disclosure does not allow arbitrary code execution; however, it could allow arbitrary code to be run if the attacker uses it in combination with another vulnerability.</p> <p>To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.</p> <p>The security update addresses the vulnerability by correcting how GDI+ handles memory addresses.</p>

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-16914

почти 5 лет назад

Windows GDI+ Information Disclosure Vulnerability

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-rxf5-p2mw-2f95

около 3 лет назад

An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI+ Information Disclosure Vulnerability'.

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2020-04764

почти 5 лет назад

Уязвимость компонента Windows Graphics Device Interface Plus (GDI+) операционных систем Windows, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-16914

<p>An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, allowing an attacker to retrieve information from a targeted system. By itself, the information disclosure does not allow arbitrary code execution; however, it could allow arbitrary code to be run if the attacker uses it in combination with another vulnerability.</p> <p>To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.</p> <p>The security update addresses the vulnerability by correcting how GDI+ handles memory addresses.</p>

CVSS3: 5.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-16914

Windows GDI+ Information Disclosure Vulnerability

CVSS3: 5.5
0%
Низкий
почти 5 лет назад
github логотип
GHSA-rxf5-p2mw-2f95

An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI+ Information Disclosure Vulnerability'.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2020-04764

Уязвимость компонента Windows Graphics Device Interface Plus (GDI+) операционных систем Windows, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу