CVE-2020-0621

Description

A security feature bypass vulnerability exists in Windows 10 when third party filters are called during a password update, aka Windows Security Feature Bypass Vulnerability.

Risk Information

Base Score
4.4
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
0.183

Associated Vulnerability

VulnerabilityOS Platform
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1803 for x64-based Systems (KB4534293)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2016 (1803) for x64-based Systems (KB4534293)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1803 for x86-based Systems (KB4534293)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2019 for x64-based Systems (KB4534273)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB4534273)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB4534273)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4534276)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4534276)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-281492020-01 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4534293)
PATCH-281502020-01 Cumulative Update for Windows Server 2016 (1803) for x64-based Systems (KB4534293)
PATCH-281512020-01 Cumulative Update for Windows 10 Version 1803 for x86-based Systems (KB4534293)
PATCH-281522020-01 Cumulative Update for Windows Server 2019 for x64-based Systems (KB4534273)
PATCH-281532020-01 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB4534273)
PATCH-281542020-01 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB4534273)
PATCH-281472020-01 Cumulative Update for Windows 10 Version 1709 for x86-based Systems (KB4534276)
PATCH-281482020-01 Cumulative Update for Windows 10 Version 1709 for x64-based Systems (KB4534276)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234