Elevation of Privilege Vulnerability in OneDrive for Windows Desktop
CVE-2020-0935

5.5MEDIUM

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
15 April 2020

Summary

A vulnerability has been identified in the OneDrive for Windows Desktop application related to improper handling of symbolic links. This flaw could potentially enable an attacker to gain elevated privileges, leading to unauthorized access to system resources. Users of the affected product are encouraged to review their systems and apply necessary updates to mitigate any associated risks.

Affected Version(s)

OneDrive for Windows = unspecified

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.