CVE-2020-0787
unknown
KEV
CVSS v3
—
CVSS v2
—
VIR risk
1.5
Description
Microsoft Windows BITS is vulnerable to to a privilege elevation vulnerability if it improperly handles symbolic links. An actor can exploit this vulnerability to execute arbitrary code with system-level privileges.
CISA KEV
- Vendor
- Microsoft
- Product
- Windows
- Due date
- 2022-07-28
Predictions
Exploit likelihood
99%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cisa-kev — https://nvd.nist.gov/vuln/detail/CVE-2020-0787
Exploits
References
Verify integrity in audit chain (admin only). AS-IS.