Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-0683

An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0686.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.299
EPSS Ranking 96.3%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 7.2
Proposed Action
Microsoft Windows Installer contains a privilege escalation vulnerability when MSI packages process symbolic links, which allows attackers to bypass access restrictions to add or remove files.
Ransomware Campaign
Unknown
Products affected by CVE-2020-0683


Contact Us

Shodan ® - All rights reserved