Elevation of Privilege Vulnerability in Microsoft Windows Defender
CVE-2020-1170

7.8HIGH

Summary

A significant elevation of privilege vulnerability in Microsoft Windows Defender can allow an attacker with logged-in access to delete arbitrary files from the system. This flaw can potentially disrupt system integrity and could be exploited to manipulate or erase critical files, leading to severe security breaches. Remediation measures are essential to protect against exploitation.

Affected Version(s)

Microsoft Forefront Endpoint Protection 2010

Microsoft Security Essentials = unspecified

Microsoft System Center Endpoint Protection

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.