CVE-2020-0808HighCVSS 7.8
Provisioning Runtime Elevation of Privilege Vulnerability
🔗 CVE IDs covered (1)
📋 Description
An elevation of privilege vulnerability exists in the way the Provisioning Runtime validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would require unprivileged code execution on a victim system. The security update addresses the vulnerability by correctly validating file operations.
🎯 Affected products20
- Windows 10 Version 1709 for 32-bit Systems
- Windows 10 Version 1709 for ARM64-based Systems
- Windows 10 Version 1709 for x64-based Systems
- Windows 10 Version 1803 for 32-bit Systems
- Windows 10 Version 1803 for ARM64-based Systems
- Windows 10 Version 1803 for x64-based Systems
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for ARM64-based Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 1903 for 32-bit Systems
- Windows 10 Version 1903 for ARM64-based Systems
- Windows 10 Version 1903 for x64-based Systems
- Windows 10 Version 1909 for 32-bit Systems
- Windows 10 Version 1909 for ARM64-based Systems
- Windows 10 Version 1909 for x64-based Systems
- Windows Server 2019
- Windows Server 2019 (Server Core installation)
- Windows Server, version 1803 (Server Core Installation)
- Windows Server, version 1903 (Server Core installation)
- Windows Server, version 1909 (Server Core installation)
✅ Remediation
KB4540689 (Security Update) KB4538461 (Security Update) KB4540673 (Security Update) KB4540681 (Security Update)
🔗 References (7)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2020-0808
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4540689
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4538461
- referencehttps://support.microsoft.com/help/4538461
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4540673
- referencehttps://support.microsoft.com/help/4540673
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4540681