Elevation of Privilege Vulnerability in Microsoft Defender
CVE-2020-1461
7.1HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 14 July 2020
What is CVE-2020-1461?
An elevation of privilege vulnerability can be exploited through the MpSigStub.exe component of Microsoft Defender. This vulnerability allows an unauthorized attacker to delete files in arbitrary locations. To successfully exploit this weakness, the attacker would first need to gain access to the system. The risk posed by this vulnerability highlights the importance of managing user permissions and keeping software updated.
Affected Version(s)
Microsoft Forefront Endpoint Protection 2010
Microsoft Security Essentials = unspecified
Microsoft System Center Endpoint Protection