← Back

CVE-2020-0798

nvd nist
Published: Mar 12, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an insecure library loading behavior.A locally authenticated attacker could run arbitrary code with elevated system privileges, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0779, CVE-2020-0814, CVE-2020-0842, CVE-2020-0843.

Affected (11)

3 products
Windows 10
Windows Server 2016
Windows Server 2019
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 1607
Version 1709
Version 1803
Version 1809
Version 1903
Version 1909
Microsoft
All versions
Version 1803
Version 1903
Version 1909
All versions

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.