PT-2020-4822 · Microsoft · Windows+1

Published

2020-11-10

·

Updated

2023-12-31

·

CVE-2020-17090

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Windows (affected versions not specified) Microsoft Defender for Endpoint (affected versions not specified)
Description: The issue is related to errors in security settings, allowing a remote attacker to exploit it and potentially disclose protected information. It is a security-feature bypass vulnerability that enables attackers to affect the system.
Recommendations: For Windows, consider applying security patches or configuration changes to fix errors in security settings until a specific fix is provided. For Microsoft Defender for Endpoint, restrict access to security features to minimize the risk of exploitation until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05375
CVE-2020-17090

Affected Products

Defender For Endpoint
Windows