642
VMScore

CVE-2020-1034

Published: 11/09/2020 Updated: 31/12/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 4.2 | Exploitability Score: 2.5
VMScore: 642
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

<p>An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.</p> <p>To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.</p> <p>The security update addresses the vulnerability by ensuring the Windows Kernel properly handles objects in memory.</p>

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2012 r2

microsoft windows 10 1607

microsoft windows 8.1 -

microsoft windows server 2016 -

microsoft windows rt 8.1 -

microsoft windows server 2012 -

microsoft windows 10 -

microsoft windows 10 1709

microsoft windows 10 1803

microsoft windows server 2019 -

microsoft windows 10 1809

microsoft windows server 2016 1903

microsoft windows 10 1903

microsoft windows server 2016 1909

microsoft windows 10 1909

microsoft windows 10 2004

microsoft windows server 2016 2004

Github Repositories

CVE 2020-1034 exploit and presentation

CVE-2020-1034 Warning This repository contains a working exploit Publication was made for educational purposes only Owner of this repository is not responsible for any damage done by any part of source code published here This repository was created as a homework for "Protected Information Systems" course in National Research Nuclear University MEPhI CVE 2020-10

PoC demonstrating the use of cve-2020-1034 for privilege escalation

CVE-2020-1034 PoC demonstrating the use of cve-2020-1034 for privilege escalation Tested on unpatched Windows 10 2004, build 19041488 Vulnerability was dicovered by Microsoft and fixed on patch Tuesday 8/9/2020: msrcmicrosoftcom/update-guide/en-US/vulnerability/CVE-2020-1034 Writeup Part 1: windows-internalscom/exploiting-a-simple-vulnerability-in-35-easy-