CVE-2020-1375 PUBLISHED CVSS 7.800000190734863 HIGH

An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Server Elevation of Privilege Vulnerability'.

EPSS 2.03% · 83.7th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
2.03%
83.7th percentile

Affected Products

VendorProductVersions
MicrosoftWindows 10 Version 1909 for 32-bit Systemsunspecified
microsoftwindows_102004, 1809, 1709
MicrosoftWindows Server2019, 2019 (Core installation)
microsoftwindows_server_2019
MicrosoftWindows 10 Version 1903 for 32-bit Systemsunspecified
MicrosoftWindows 10 Version 1903 for x64-based Systemsunspecified
MicrosoftWindows10 Version 1709 for ARM64-based Systems, 10 Version 1709 for x64-based Systems, 10 Version 1709 for 32-bit Systems
MicrosoftWindows 10 Version 2004 for 32-bit Systemsunspecified
MicrosoftWindows Server, version 2004 (Server Core installation)unspecified
MicrosoftWindows Server, version 1909 (Server Core installation)unspecified
MicrosoftWindows 10 Version 1909 for x64-based Systemsunspecified
microsoftwindows_server_20161903, 2004, 1909
MicrosoftWindows 10 Version 2004 for ARM64-based Systemsunspecified
MicrosoftWindows Server, version 1903 (Server Core installation)unspecified
MicrosoftWindows 10 Version 2004 for x64-based Systemsunspecified
MicrosoftWindows 10 Version 1903 for ARM64-based Systemsunspecified
MicrosoftWindows 10 Version 1909 for ARM64-based Systemsunspecified

Timeline

References

Open in Interactive Console →