UNKNOWN Microsoft
CVE-2020-1476
ASP.NET and .NET Elevation of Privilege Vulnerability
Microsoft Security Update 2020-Aug: ASP.NET and .NET Elevation of Privilege Vulnerability
Affected Products
- Microsoft .NET Framework 4.8 on Windows 10 Version 1607 for 32-bit Systems
- Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1909 for 32-bit Systems
- Microsoft .NET Framework 2.0 Service Pack 2 on Windows Server 2008 for 32-bit Systems Service Pack 2
- Microsoft .NET Framework 4.5.2 on Windows Server 2012 R2 (Server Core installation)
- Microsoft .NET Framework 4.8 on Windows 10 Version 1709 for 32-bit Systems
- Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1/4.7.2 on Windows RT 8.1
- Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2012 R2
- Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2012 R2 (Server Core installation)
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2020-1476
- https://nvd.nist.gov/vuln/detail/CVE-2020-1476
This unknown severity vulnerability was published on 2020-08-11 via Microsoft. Affected: Microsoft .NET Framework 4.8 on Windows 10 Version 1607 for 32-bit Systems, Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1909 for 32-bit Systems, Microsoft .NET Framework 2.0 Service Pack 2 on Windows Server 2008 for 32-bit Systems Service Pack 2 and 5 more.
vulnfeed aggregates 9909 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.