cbcvebase.
CVE-2020-1234
published 2020-06-09

CVE-2020-1234: An elevation of privilege vulnerability exists when Windows Error Reporting improperly handles objects in memory.To exploit this vulnerability, an attacker…

PriorityP339high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
4.67%
90.8th percentile
An elevation of privilege vulnerability exists when Windows Error Reporting improperly handles objects in memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.

Affected

66 ranges· showing 25
VendorProductVersion rangeFixed in
googlechrome_chrome
inteloptimization_for_tensorflow>= 0 < 1.15.41.15.4
inteloptimization_for_tensorflow>= 0 < 1.15.51.15.5
inteloptimization_for_tensorflow>= 2.0.0 < 2.0.32.0.3
inteloptimization_for_tensorflow>= 2.0.0 < 2.0.42.0.4
inteloptimization_for_tensorflow>= 2.1.0 < 2.1.22.1.2
inteloptimization_for_tensorflow>= 2.1.0 < 2.1.32.1.3
inteloptimization_for_tensorflow>= 2.2.0 < 2.2.12.2.1
inteloptimization_for_tensorflow>= 2.2.0 < 2.2.22.2.2
inteloptimization_for_tensorflow>= 2.3.0 < 2.3.12.3.1
inteloptimization_for_tensorflow>= 2.3.0 < 2.3.22.3.2
k8s.iokubernetes>= 0 < 1.16.111.16.11
k8s.iokubernetes>= 1.17.0 < 1.17.71.17.7
k8s.iokubernetes>= 1.18.0 < 1.18.41.18.4
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows
microsoftwindows

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_msrc7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.