Back

HIGH

Windows State Repository Service Elevation of Privilege Vulnerability

Published May 21, 2020

Description

An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in an elevated context. An attacker could exploit this vulnerability by running a specially crafted application on the victim system. The update addresses the vulnerability by correcting the way the Windows State Repository Service handles objects in memory.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (0)

No CWE recorded.

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner microsoft
Published May 21, 2020
Updated Aug 19, 2026
Reserved Nov 4, 2019

CISA Vulnrichment

No data

NVD

Status Modified
Modified Aug 19, 2026

Red Hat

No data

ENISA EUVD

Assigner microsoft
Published May 21, 2020
Updated Aug 19, 2026

GitHub

No data