Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-1013
Description:

An elevation of privilege vulnerability exists when Microsoft Windows processes group policy updates. An attacker who successfully exploited this vulnerability could potentially escalate permissions or perform additional privileged actions on the target machine.

To exploit this vulnerability, an attacker would need to launch a man-in- the-middle (MiTM) attack against the traffic passing between a domain controller and the target machine. An attacker could then create a group policy to grant administrator rights to a standard user.

The security update addresses the vulnerability by enforcing Kerberos authentication for certain calls over LDAP.

Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-1013
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1013
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1013




© 1998-2025 E-Soft Inc. All rights reserved.