CVE-2020-16939
HIGH 7.8EPSS 2.4%
<p>An elevation of privilege vulnerability exists when Group Policy improperly checks access. An attacker who successfully exploited this vulnerability could run processes in an elevated context.</p><p>To exploit the vulnerability, an attacker would first have to log on to the system, and then run a specially crafted application to take control over the affected system.</p><p>The security update addresses the vulnerability by correcting how Group Policy checks access.</p>
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 2.42% chance of exploitation in the next 30 days, 83th percentile
- Published
- 2020-10-16
- Updated
- 2024-08-04
Proof-of-concept exploits (1)
- rogue-kdc/CVE-2020-1693912★ · 2020-10-27