CVE-2020-1120
Last modified
CVE-2020-1120 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-1244.. EPSS estimates a 1.21% chance of exploitation in the next 30 days.
Description
A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-1244.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows 10 | 2004 |
References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1120Patch, Vendor Advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1120Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-1120?
How severe is CVE-2020-1120?
How do I fix CVE-2020-1120?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-11194Possible out of bound access in TA while processing a comman…7.8
- CVE-2020-11195Out of bound write and read in TA while processing command f…7.8
- CVE-2020-11196u'Integer overflow to buffer overflow occurs while playback …9.8
- CVE-2020-11197Possible integer overflow can occur when stream info update …9.8
- CVE-2020-11198Key material used for TZ diag buffer encryption and other da…6.7
- CVE-2020-11199HLOS to access EL3 stack canary by just mapping imem region …5.5
- CVE-2020-11200Buffer over-read while parsing RPS due to lack of check of i…7.5
- CVE-2020-11201Arbitrary access to DSP memory due to improper check in load…7.8
- CVE-2020-11202Buffer overflow/underflow occurs when typecasting the buffer…7.8
- CVE-2020-11203Stack overflow may occur if GSM/WCDMA broadcast config size …7.1
- CVE-2020-11204Possible memory corruption and information leakage in sub-sy…7.8
- CVE-2020-11205u'Possible integer overflow to heap overflow while processin…7.8
Are you affected by CVE-2020-1120?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
