Vulnerability Details CVE-2020-0900
An elevation of privilege vulnerability exists when the Visual Studio Extension Installer Service improperly handles file operations, aka 'Visual Studio Extension Installer Service Elevation of Privilege Vulnerability'.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.6%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 3.6
Products affected by CVE-2020-0900
-
cpe:2.3:a:microsoft:visual_studio_2015:update_3
-
cpe:2.3:a:microsoft:visual_studio_2017:15.9
-
cpe:2.3:a:microsoft:visual_studio_2019:16.0
-
cpe:2.3:a:microsoft:visual_studio_2019:16.4
-
cpe:2.3:a:microsoft:visual_studio_2019:16.5.0