Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-1056

EPSS 14.77% · P95
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-1056

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain.In a web-based attack scenario, an attacker could host a website that is used to attempt to exploit the vulnerability, aka 'Microsoft Edge Elevation of Privilege Vulnerability'.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Edge 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Edge是美国微软(Microsoft)公司的一款Windows 10之后版本系统附带的Web浏览器。 Microsoft Edge中存在提权漏洞,该漏洞源于程序不正确地强制实施跨域策略。攻击者可利用该漏洞访问信息并将其注入到其他域中。以下产品及版本受到影响: Microsoft Edge版本。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for 32-bit Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for x64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for ARM64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for 32-bit Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for x64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for ARM64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows Server 2019 unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for 32-bit Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for x64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for ARM64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1709 for 32-bit Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1709 for x64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1709 for ARM64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for 32-bit Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for x64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for ARM64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for 32-bit Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for x64-based Systems unspecified -
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows Server 2016 unspecified -

II. Public POCs for CVE-2020-1056

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-1056

登录查看更多情报信息。

Same Patch Batch · Microsoft · 2020-05-21 · 112 CVEs total

CVE-2020-1090Microsoft Windows Runtime 安全漏洞
CVE-2020-1071Microsoft Windows 安全漏洞
CVE-2020-1077Microsoft Windows Runtime 安全漏洞
CVE-2020-1076Microsoft Windows 缓冲区错误漏洞
CVE-2020-1075Microsoft Windows Subsystem for Linux 信息泄露漏洞
CVE-2020-1078Microsoft Windows Installer 安全漏洞
CVE-2020-1082Microsoft Windows Error Reporting 路径遍历漏洞
CVE-2020-1081Microsoft Windows Printer Service 安全漏洞
CVE-2020-1079Microsoft Windows 安全漏洞
CVE-2020-1086Microsoft Windows Runtime 安全漏洞
CVE-2020-1084Microsoft Windows Connected User Experiences and Telemetry Service 安全漏洞
CVE-2020-1088Microsoft Windows Error Reporting 安全漏洞
CVE-2020-1087Microsoft Windows Kernel 安全漏洞
CVE-2020-1092Microsoft Internet Explorer 缓冲区错误漏洞
CVE-2020-1105Microsoft SharePoint 跨站脚本漏洞
CVE-2020-1103Microsoft SharePoint 信息泄露漏洞
CVE-2020-1107Microsoft SharePoint 跨站脚本漏洞
CVE-2020-1106Microsoft SharePoint 跨站脚本漏洞
CVE-2020-1104Microsoft SharePoint 跨站脚本漏洞
CVE-2020-1109Microsoft Windows和Windows Server 安全漏洞

Showing top 20 of 112 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-1056

No comments yet


Leave a comment