CVE-2020-1537 HIGH

CVE-2020-1537: Windows Remote Access Elevation of Privilege Vulnerability

Vendor Microsoft
Product Windows 10 Version 2004
Published August 17, 2020
Last update November 18, 2024

CVSS base score

7.8/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C

What the vulnerability does

01Description

An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges. To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application. The security update addresses the vulnerability by ensuring the Windows Remote Access properly handles file operations.

Key dates

02Disclosure timeline

August 17, 2020 CVE published
November 18, 2024 Record updated