CVE-2020-1429: High severity windows 10 vulnerability
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'.
Affected Software
Remediation
Event History
Frequently Asked Questions
What access does an attacker need to exploit this vulnerability?
Exploitation requires local access and low-level privileges on an affected system; it is not remotely exploitable according to the CVSS vector. No user interaction is required.
What could an attacker achieve after successful exploitation?
Successful exploitation can give the attacker elevated privileges and impact confidentiality, integrity, and availability. The CVSS vector rates all three impacts as high.
What is the recommended remediation?
Apply the available vendor patch to affected Windows 10, Windows Server 2016, and Windows Server 2019 systems. The provided data does not identify an alternative mitigation for systems that cannot yet be patched.