Описание
Multiple vulnerabilities were found in Microsoft Developer Tools. Malicious users can exploit these vulnerabilities to gain privileges, execute arbitrary code, bypass security restrictions.
Below is a complete list of vulnerabilities:
- An elevation of privilege vulnerability in Diagnostics Hub Standard Collector can be exploited remotely via specially crafted application to gain privileges.
- A remote code execution vulnerability in Visual Studio can be exploited remotely via specially crafted file to execute arbitrary code.
- A remote code execution vulnerability in Visual Studio JSON can be exploited remotely to execute arbitrary code.
- A security feature bypass vulnerability in Microsoft ASP.NET Core can be exploited remotely to bypass security restrictions.
- A security feature bypass vulnerability in Windows Defender Application Control can be exploited remotely to bypass security restrictions.
Первичный источник обнаружения
Связанные продукты
Список CVE
- CVE-2020-1130 high
- CVE-2020-0951 high
- CVE-2020-1133 high
- CVE-2020-16874 critical
- CVE-2020-16881 critical
- CVE-2020-1045 critical
- CVE-2020-16856 critical
Список KB
Смотрите также
Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com
Нашли неточность в описании этой уязвимости? Дайте нам знать!