Security Advisory

CVE-2020-1571

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-08-17 19:13:47
Last updated 2024-08-04 06:39:10
Assigner microsoft
State PUBLISHED

Description

An elevation of privilege vulnerability exists in Windows Setup in the way it handles permissions. A locally authenticated attacker could run arbitrary code with elevated system privileges. After successfully exploiting the vulnerability, an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. The security update addresses the vulnerability by ensuring Windows Setup properly handles permissions.