CVE-2020-16876
published 2020-10-16CVE-2020-16876: An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations. An attacker…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.92%
56.4th percentile
An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.
The security update addresses the vulnerability by ensuring the Windows Application Compatibility Client Library properly handles registry operations.
Affected
37 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10_version_1507 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1607 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1709 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1709_for_32-bit_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1803 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1809 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1903_for_32-bit_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1903_for_arm64-based_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1903_for_x64-based_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1909 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_2004 | >= 10.0.0 < publication | publication |
| microsoft | windows_server_2016 | — | — |
| microsoft | windows_server_2016 | — | — |
| microsoft | windows_server_2016 | — | — |
| microsoft | windows_server_2016 | >= 10.0.0 < publication | publication |
| microsoft | windows_server_2019 | >= 10.0.0 < publication | publication |
| microsoft | windows_server_version_2004 | >= 10.0.0 < publication | publication |
| msrc | windows_10 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
vendor_msrc7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Windows Application Compatibility Client Library Elevation of Privilege Vulnerability
vendor_msrc·2020-10-13·CVSS 7.1
CVE-2020-16876 [HIGH] Windows Application Compatibility Client Library Elevation of Privilege Vulnerability
Windows Application Compatibility Client Library Elevation of Privilege Vulnerability
Description: An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.
The security update addresses the vulnerability by ensuring the Windows Application Compatibility Client Library properly handles registry operations.
Microsoft Windows: Microsoft Windows
Issuing CNA: Microsoft
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Softwar
GHSA
GHSA-gxm2-h73p-34fq: An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka '
ghsa_unreviewed·2022-05-24·CVSS 7.1
CVE-2020-16920 [HIGH] CWE-269 GHSA-gxm2-h73p-34fq: An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka '
An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka 'Windows Application Compatibility Client Library Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16876.
GHSA
GHSA-77ph-x794-74hg: An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka '
ghsa_unreviewed·2022-05-24·CVSS 7.8
CVE-2020-16876 [HIGH] CWE-269 GHSA-77ph-x794-74hg: An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka '
An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka 'Windows Application Compatibility Client Library Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16920.
No detection rules found.
No public exploits indexed.
Unit42
Unit 42 Discovers 15 New Vulnerabilities Across Microsoft, Adobe and Apple Products
blogs_unit42·2021-03-19·CVSS 6.1
[MEDIUM] Unit 42 Discovers 15 New Vulnerabilities Across Microsoft, Adobe and Apple Products
## Executive Summary
Unit 42 researchers have been credited with discovering 15 new vulnerabilities addressed by the Microsoft Security Response Center (MSRC), Adobe Security Bulletin and Apple Security Updates, as part of the last quarter of security update releases.
## Vulnerabilities
Of the 15 new vulnerabilities credited to Unit 42 researchers, 10 come from Microsoft with severity ratings from low to important. The four Adobe Reader DC vulnerabilities are all critical bugs that allow remote code execution (RCE). Lastly, there is an Apple cross site scripting (XSS) vulnerability that could also lead to arbitrary RCE in the context of the currently logged in user.
The Unit 42 researchers credited are Tao Yan, Zhibin Zhang, Bo Qu, Ronen Haber and Ken Hsu.
The recently discovered vuln
Unit42
Unit 42 Discovers 15 New Vulnerabilities Across Microsoft, Adobe and Apple Products
blogs_unit42·2021-03-19·CVSS 7.1
[HIGH] Unit 42 Discovers 15 New Vulnerabilities Across Microsoft, Adobe and Apple Products
Threat Research Center
Threat Research
Vulnerabilities
## Unit 42 Discovers 15 New Vulnerabilities Across Microsoft, Adobe and Apple Products
Bo Qu
Published: March 19, 2021
Threat Research
Vulnerabilities
Adobe
Apple
Black Hat
Microsoft
Microsoft Security Response Center (MSRC)
MSRC
Privilege escalation
Remote Code Execution
## Executive Summary
Unit 42 researchers have been credited with discovering 15 new vulnerabilities addressed by the Microsoft Security Response Center (MSRC) , Adobe Security Bulletin and Apple Security Updates , as part of the last quarter of security update releases.
## Vulnerabilities
Of the 15 new vulnerabilities credited to Unit 42 researchers, 10 come from Microsoft with severity ratings from low to important. The four Adobe Reader DC v
2020-10-16
Published