PT-2020-2744 · Microsoft · Windows Connected Devices Platform Service+1

Afang5472

+3

·

Published

2020-06-09

·

Updated

2021-07-21

·

CVE-2020-1211

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Connected Devices Platform Service (affected versions not specified)
Description The issue is related to an elevation of privilege vulnerability in the way the Connected Devices Platform Service handles objects in memory. This vulnerability is associated with unsafe privilege management. Exploitation of the vulnerability could allow an attacker to elevate their privileges using a specially crafted application. The vulnerability affects the system and allows attackers to gain elevated privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02826
CVE-2020-1211

Affected Products

Windows
Windows Connected Devices Platform Service