Vulnerability Details CVE-2020-24356
`cloudflared` versions prior to 2020.8.1 contain a local privilege escalation vulnerability on Windows systems. When run on a Windows system, `cloudflared` searches for configuration files which could be abused by a malicious entity to execute commands as a privileged user. Version 2020.8.1 fixes this issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.7%
CVSS Severity
CVSS v3 Score 6.4
CVSS v2 Score 4.6
Products affected by CVE-2020-24356
-
cpe:2.3:a:cloudflare:cloudflared:2018.10.0
-
cpe:2.3:a:cloudflare:cloudflared:2018.10.1
-
cpe:2.3:a:cloudflare:cloudflared:2018.10.2
-
cpe:2.3:a:cloudflare:cloudflared:2018.10.3
-
cpe:2.3:a:cloudflare:cloudflared:2018.10.4
-
cpe:2.3:a:cloudflare:cloudflared:2018.10.5
-
cpe:2.3:a:cloudflare:cloudflared:2018.11.0
-
cpe:2.3:a:cloudflare:cloudflared:2018.12.0
-
cpe:2.3:a:cloudflare:cloudflared:2018.12.1
-
cpe:2.3:a:cloudflare:cloudflared:2018.8.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.1.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.10.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.10.1
-
cpe:2.3:a:cloudflare:cloudflared:2019.10.2
-
cpe:2.3:a:cloudflare:cloudflared:2019.10.3
-
cpe:2.3:a:cloudflare:cloudflared:2019.10.4
-
cpe:2.3:a:cloudflare:cloudflared:2019.11.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.11.2
-
cpe:2.3:a:cloudflare:cloudflared:2019.11.3
-
cpe:2.3:a:cloudflare:cloudflared:2019.12.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.2.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.2.1
-
cpe:2.3:a:cloudflare:cloudflared:2019.3.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.3.1
-
cpe:2.3:a:cloudflare:cloudflared:2019.3.2
-
cpe:2.3:a:cloudflare:cloudflared:2019.4.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.4.1
-
cpe:2.3:a:cloudflare:cloudflared:2019.5.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.6.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.7.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.8.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.8.1
-
cpe:2.3:a:cloudflare:cloudflared:2019.8.3
-
cpe:2.3:a:cloudflare:cloudflared:2019.8.4
-
cpe:2.3:a:cloudflare:cloudflared:2019.9.0
-
cpe:2.3:a:cloudflare:cloudflared:2019.9.1
-
cpe:2.3:a:cloudflare:cloudflared:2019.9.2
-
cpe:2.3:a:cloudflare:cloudflared:2020.2.0
-
cpe:2.3:a:cloudflare:cloudflared:2020.2.1
-
cpe:2.3:a:cloudflare:cloudflared:2020.3.0
-
cpe:2.3:a:cloudflare:cloudflared:2020.3.1
-
cpe:2.3:a:cloudflare:cloudflared:2020.3.2
-
cpe:2.3:a:cloudflare:cloudflared:2020.4.0
-
cpe:2.3:a:cloudflare:cloudflared:2020.5.0
-
cpe:2.3:a:cloudflare:cloudflared:2020.5.1
-
cpe:2.3:a:cloudflare:cloudflared:2020.6.0
-
cpe:2.3:a:cloudflare:cloudflared:2020.6.1
-
cpe:2.3:a:cloudflare:cloudflared:2020.6.2
-
cpe:2.3:a:cloudflare:cloudflared:2020.6.3
-
cpe:2.3:a:cloudflare:cloudflared:2020.6.5
-
cpe:2.3:a:cloudflare:cloudflared:2020.6.6
-
cpe:2.3:a:cloudflare:cloudflared:2020.7.0
-
cpe:2.3:a:cloudflare:cloudflared:2020.7.1
-
cpe:2.3:a:cloudflare:cloudflared:2020.7.2
-
cpe:2.3:a:cloudflare:cloudflared:2020.7.3
-
cpe:2.3:a:cloudflare:cloudflared:2020.7.4
-
cpe:2.3:a:cloudflare:cloudflared:2020.8.0