Vulnerabilities > Microsoft > Forefront Endpoint Protection 2010 > High

DATE CVE VULNERABILITY TITLE RISK
2020-06-09 CVE-2020-1170 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows Defender Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-06-09 CVE-2020-1163 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows Defender Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2019-08-14 CVE-2019-1161 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations. To exploit the vulnerability, an attacker would first have to log on to the system.
local
low complexity
microsoft
7.1
2011-02-25 CVE-2011-0037 Improper Input Validation vulnerability in Microsoft products
Microsoft Malware Protection Engine before 1.1.6603.0, as used in Microsoft Malicious Software Removal Tool (MSRT), Windows Defender, Security Essentials, Forefront Client Security, Forefront Endpoint Protection 2010, and Windows Live OneCare, allows local users to gain privileges via a crafted value of an unspecified user registry key.
local
low complexity
microsoft CWE-20
7.2