Back

HIGH KEV Used in ransomware campaigns

An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Update Notification Manager Elevation of Privilege Vulnerability'

Published Jan 14, 2020 ·Due Jun 13, 2022

Description

An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Update Notification Manager Elevation of Privilege Vulnerability'.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner microsoft
Published Jan 14, 2020
Updated Aug 12, 2026
Reserved Nov 4, 2019

CISA Vulnrichment

Updated Feb 7, 2025

NVD

Status Analyzed
Modified Aug 12, 2026

Red Hat

No data

ENISA EUVD

Assigner microsoft
Published Jan 14, 2020
Updated Aug 12, 2026
Exploited since May 23, 2022

GitHub

No data