7.8
CVE-2020-1217
- EPSS 4.36%
- Veröffentlicht 09.06.2020 20:15:14
- Zuletzt bearbeitet 21.11.2024 05:10:00
- Erkennungen
An information disclosure vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Information Disclosure Vulnerability'.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 10 Version 1709
Microsoft ≫ Windows 10 Version 1803
Microsoft ≫ Windows 10 Version 1809
Microsoft ≫ Windows 10 Version 1903
Microsoft ≫ Windows 10 Version 1909
Microsoft ≫ Windows 10 Version 2004
Microsoft ≫ Windows Server 2016 Version -
Microsoft ≫ Windows Server 2016 Version 1803
Microsoft ≫ Windows Server 2016 Version 1903
Microsoft ≫ Windows Server 2016 Version 1909
Microsoft ≫ Windows Server 2016 Version 2004
Microsoft ≫ Windows Server 2019 Version -
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.36% | 0.9 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| NIST | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1217