CVE-2020-0902High

Service Fabric Elevation of Privilege

Published
March 10, 2020
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

An elevation of privilege vulnerability exists in Service Fabric File Store Service under certain conditions. An unauthenticated remote user could gain rights to the Service Fabric File Store Service if the node is exposed externally via SMB or SCP standard ports and they are using the impacted configuration. The update addresses the vulnerability by making ineffective the resources created by the impacted configuration.

🎯 Affected products1

  • Service Fabric

✅ Remediation

KBRelease Notes (Security Update)

🔗 References (2)