PT-2020-1285 · Microsoft · Windows Cryptographic Services+1

Published

2020-01-14

·

Updated

2021-07-21

·

CVE-2020-0620

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Cryptographic Services (affected versions not specified)
Description The issue exists due to improper handling of objects in memory by the Cryptographic Services in the Windows operating system. This can allow an attacker to elevate their privileges. The vulnerability is related to the improper handling of files by Microsoft Cryptographic Services.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-00152
CVE-2020-0620

Affected Products

Windows
Windows Cryptographic Services