7.8

CVE-2020-1406

An elevation of privilege vulnerability exists in the way that the Windows Network List Service handles objects in memory, aka 'Windows Network List Service Elevation of Privilege Vulnerability'.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftWindows 10 Version- HwPlatformx64
MicrosoftWindows 10 Version- HwPlatformx86
MicrosoftWindows 10 Version1607 HwPlatformx64
MicrosoftWindows 10 Version1607 HwPlatformx86
MicrosoftWindows 10 Version1809 HwPlatformarm64
MicrosoftWindows 10 Version1809 HwPlatformx64
MicrosoftWindows 10 Version1809 HwPlatformx86
MicrosoftWindows 10 Version1903 HwPlatformarm64
MicrosoftWindows 10 Version1903 HwPlatformx64
MicrosoftWindows 10 Version1903 HwPlatformx86
MicrosoftWindows 10 Version1909 HwPlatformarm64
MicrosoftWindows 10 Version1909 HwPlatformx64
MicrosoftWindows 10 Version1909 HwPlatformx86
MicrosoftWindows 10 Version2004 HwPlatformarm64
MicrosoftWindows 10 Version2004 HwPlatformx64
MicrosoftWindows 10 Version2004 HwPlatformx86
MicrosoftWindows 8.1 Version- HwPlatformx64
MicrosoftWindows 8.1 Version- HwPlatformx86
MicrosoftWindows Rt 8.1 Version-
MicrosoftWindows Server 2016 Version1903
MicrosoftWindows Server 2016 Version1909
MicrosoftWindows Server 2016 Version2004
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.582
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C