PT-2020-2734 · Microsoft · Windows Media Foundation+1

Hossein Lotfi

·

Published

2020-06-09

·

Updated

2021-07-21

·

CVE-2020-1238

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows Media Foundation (affected versions not specified)
Description A memory corruption issue exists due to improper handling of objects in memory by Windows Media Foundation. This can be exploited by remote attackers to execute arbitrary code, potentially affecting the confidentiality, integrity, and availability of protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Improper Privilege Management

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02812
CVE-2020-1238
ZDI-20-695
ZDI-20-696

Affected Products

Windows
Windows Media Foundation