CVE-2020-1272: High severity windows 10 vulnerability
An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an insecure library loading behavior.A locally authenticated attacker could run arbitrary code with elevated system privileges, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1277, CVE-2020-1302, CVE-2020-1312.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-1272?
CVE-2020-1272 has a CVSS score indicating a high severity due to its potential for elevation of privileges.
How do I fix CVE-2020-1272?
To fix CVE-2020-1272, ensure you apply the latest security updates provided by Microsoft for the affected Windows versions.
Who is affected by CVE-2020-1272?
CVE-2020-1272 affects multiple versions of Microsoft Windows including Windows 7, Windows 8.1, and various Windows 10 builds.
What kind of attacks can exploit CVE-2020-1272?
An attacker can exploit CVE-2020-1272 to execute arbitrary code with elevated system privileges on an affected system.
Is CVE-2020-1272 a remote vulnerability?
No, CVE-2020-1272 is a local vulnerability, which requires local authentication to exploit.