Microsoft · Windows Background Intelligent Transfer Service · CVE-2020-1112
**Name of the Vulnerable Software and Affected Versions**
Windows Background Intelligent Transfer Service (BITS) (affected versions not specified)
**Description**
The issue is related to the improper handling of uploaded content by the Windows Background Intelligent Transfer Service (BITS) IIS module, which can lead to an elevation of privilege. This is due to insufficient input validation, allowing a remote attacker to potentially exploit the vulnerability using a specially crafted application, thereby gaining elevated privileges.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.