CVE-2020-1377
Last modified
CVE-2020-1377 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory. An attacker who successfully exploited the vulnerability could gain elevated privileges on a targeted system. A locally authenticated attacker could exploit this vulnerability by running a specially crafted application. The security update addresses the vulnerability by helping to ensure that the Windows Kernel API properly handles objects in memory.. EPSS estimates a 1.39% chance of exploitation in the next 30 days.
Description
An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory. An attacker who successfully exploited the vulnerability could gain elevated privileges on a targeted system. A locally authenticated attacker could exploit this vulnerability by running a specially crafted application. The security update addresses the vulnerability by helping to ensure that the Windows Kernel API properly handles objects in memory.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Windows 10 | All versions | — |
| Microsoft | Windows 10 | 1607 | — |
| Microsoft | Windows 10 | 1709 | — |
| Microsoft | Windows 10 | 1803 | — |
| Microsoft | Windows 10 | 1809 | — |
| Microsoft | Windows 10 | 1903 | — |
| Microsoft | Windows 10 | 1909 | — |
| Microsoft | Windows 10 | 2004 | — |
| Microsoft | Windows 7 | All versions | Sp1 |
| Microsoft | Windows 8.1 | All versions | — |
| Microsoft | Windows Rt 8.1 | All versions | — |
| Microsoft | Windows Server 2008 | All versions | Sp2 |
| Microsoft | Windows Server 2008 | r2 | Sp1 |
| Microsoft | Windows Server 2012 | All versions | — |
| Microsoft | Windows Server 2012 | r2 | — |
| Microsoft | Windows Server 2016 | All versions | — |
| Microsoft | Windows Server 2016 | 1903 | — |
| Microsoft | Windows Server 2016 | 1909 | — |
| Microsoft | Windows Server 2016 | 2004 | — |
| Microsoft | Windows Server 2019 | All versions | — |
References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1377Patch, Vendor Advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1377Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-1377?
How severe is CVE-2020-1377?
How do I fix CVE-2020-1377?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-13763In Joomla! before 3.9.19, the default settings of the global…7.5
- CVE-2020-13764common.php in the Gravity Forms plugin before 2.4.9 for Word…7.5
- CVE-2020-13765rom_copy() in hw/core/loader.c in QEMU 4.0 and 4.1.0 does no…5.6
- CVE-2020-13767The Mitel MiCollab application before 9.1.332 for iOS could …5.9
- CVE-2020-13768In MiniShare before 1.4.2, there is a stack-based buffer ove…9.8
- CVE-2020-13769LDMS/alert_log.aspx in Ivanti Endpoint Manager through 2020.…8.8
- CVE-2020-13770Several services are accessing named pipes in Ivanti Endpoin…7.8
- CVE-2020-13771Various components in Ivanti Endpoint Manager through 2020.1…7.8
- CVE-2020-13772In /ldclient/ldprov.cgi in Ivanti Endpoint Manager through 2…5.3
- CVE-2020-13773Ivanti Endpoint Manager through 2020.1.1 allows XSS via /LDM…5.4
- CVE-2020-13774An unrestricted file-upload issue in EditLaunchPadDialog.asp…9.9
- CVE-2020-13775ZNC 1.8.0 up to 1.8.1-rc1 allows authenticated users to trig…6.5
Are you affected by CVE-2020-1377?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
