Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-0935 Improper Privilege Management vulnerability in Microsoft Onedrive
An elevation of privilege vulnerability exists when the OneDrive for Windows Desktop application improperly handles symbolic links, aka 'OneDrive for Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
2.1
2020-04-15 CVE-2020-0934 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows WpcDesktopMonSvc improperly manages memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-04-15 CVE-2020-0919 Improper Privilege Management vulnerability in Microsoft Remote Desktop
An elevation of privilege vulnerability exists in Remote Desktop App for Mac in the way it allows an attacker to load unsigned binaries, aka 'Microsoft Remote Desktop App for Mac Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-04-15 CVE-2020-0918 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'.
7.4
2020-04-15 CVE-2020-0917 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'.
7.4
2020-04-15 CVE-2020-0913 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-04-15 CVE-2020-0900 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Visual Studio Extension Installer Service improperly handles file operations, aka 'Visual Studio Extension Installer Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
3.6
2020-04-15 CVE-2020-0899 Improper Privilege Management vulnerability in Microsoft Visual Studio 2017 and Visual Studio 2019
An elevation of privilege vulnerability exists when Microsoft Visual Studio updater service improperly handles file permissions, aka 'Microsoft Visual Studio Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
3.6
2020-04-15 CVE-2020-0888 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-04-15 CVE-2020-0835 Improper Privilege Management vulnerability in Microsoft Windows Defender
An elevation of privilege vulnerability exists when Windows Defender antimalware platform improperly handles hard links, aka 'Windows Defender Antimalware Platform Hard Link Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2