説明
Multiple vulnerabilities were found in Microsoft Developer Tools. Malicious users can exploit these vulnerabilities to gain privileges, execute arbitrary code, bypass security restrictions.
Below is a complete list of vulnerabilities:
- An elevation of privilege vulnerability in Diagnostics Hub Standard Collector can be exploited remotely via specially crafted application to gain privileges.
- A remote code execution vulnerability in Visual Studio can be exploited remotely via specially crafted file to execute arbitrary code.
- A remote code execution vulnerability in Visual Studio JSON can be exploited remotely to execute arbitrary code.
- A security feature bypass vulnerability in Microsoft ASP.NET Core can be exploited remotely to bypass security restrictions.
- A security feature bypass vulnerability in Windows Defender Application Control can be exploited remotely to bypass security restrictions.
オリジナルアドバイザリー
エクスプロイテーション
Public exploits exist for this vulnerability.
関連製品
CVEリスト
- CVE-2020-1130 critical
- CVE-2020-0951 high
- CVE-2020-1133 critical
- CVE-2020-16874 critical
- CVE-2020-16881 critical
- CVE-2020-1045 critical
- CVE-2020-16856 critical
KBリスト
も参照してください
お住まいの地域に広がる脆弱性の統計をご覧ください statistics.securelist.com
この脆弱性についての記述に不正確な点がありますか? お知らせください!