Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Divintzero

Researcher fromBawlSec
#23934of 53,608
9.9Total CVSS
Vulnerabilities · 1
PT-2020-2341
9.9
2020-05-12
Microsoft · Windows Background Intelligent Transfer Service · CVE-2020-1112
**Name of the Vulnerable Software and Affected Versions** Windows Background Intelligent Transfer Service (BITS) (affected versions not specified) **Description** The issue is related to the improper handling of uploaded content by the Windows Background Intelligent Transfer Service (BITS) IIS module, which can lead to an elevation of privilege. This is due to insufficient input validation, allowing a remote attacker to potentially exploit the vulnerability using a specially crafted application, thereby gaining elevated privileges. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.