Elevation of Privilege Vulnerability in Microsoft Windows Defender
CVE-2020-1170
7.8HIGH
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 9 June 2020
Summary
A significant elevation of privilege vulnerability in Microsoft Windows Defender can allow an attacker with logged-in access to delete arbitrary files from the system. This flaw can potentially disrupt system integrity and could be exploited to manipulate or erase critical files, leading to severe security breaches. Remediation measures are essential to protect against exploitation.
Affected Version(s)
Microsoft Forefront Endpoint Protection 2010
Microsoft Security Essentials = unspecified
Microsoft System Center Endpoint Protection
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved