PT-2020-3706 · Microsoft · Windows

Published

2020-08-11

·

Updated

2024-01-19

·

CVE-2020-1565

CVSS v3.1

7.5

High

VectorAV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Windows (affected versions not specified)
Description: An elevation of privilege issue exists due to improper handling of junctions in the "Public Account Pictures" folder. To exploit this, an attacker must first gain execution on the victim system, then run a specially crafted application to elevate privileges. The issue is related to how Windows handles junctions.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04062
CVE-2020-1565

Affected Products

Windows