Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-90799
HistorySep 10, 2020 - 12:00 a.m.

Microsoft Windows/Windows Server Elevation of Privilege Vulnerability (CNVD-2021-90799)

2020-09-1000:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
microsoft windows
windows server
privilege vulnerability
connected user experience
telemetry service
file operations
attackers
applications
privilege escalation

EPSS

0

Percentile

9.5%

Microsoft Windows and Microsoft Windows Server are both products of Microsoft Corporation, an operating system for personal devices, and Microsoft Windows Server, a server operating system. An elevation of privilege vulnerability exists in Microsoft Windows/Windows Server, which stems from a failure of the Connected User Experience and Telemetry Service to properly handle file operations, and can be exploited by attackers running specially crafted applications to elevate privileges.