Vulnerabilities
Vulnerable Software
Microsoft:  >> Windows Server 1909  Security Vulnerabilities
CVE-2020-0787
Known exploited
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.
CVSS Score
7.8
EPSS Score
0.58
Published
2020-03-12
CVE-2020-0796
Known exploited
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.
CVSS Score
10.0
EPSS Score
0.944
Published
2020-03-12
CVE-2020-0683
Known exploited
An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0686.
CVSS Score
7.8
EPSS Score
0.299
Published
2020-02-11
CVE-2020-0638
Known exploited
An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Update Notification Manager Elevation of Privilege Vulnerability'.
CVSS Score
7.8
EPSS Score
0.071
Published
2020-01-14
CVE-2020-0601
Known exploited
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates.An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file was from a trusted, legitimate source, aka 'Windows CryptoAPI Spoofing Vulnerability'.
CVSS Score
8.1
EPSS Score
0.939
Published
2020-01-14


Contact Us

Shodan ® - All rights reserved