High severity7.8NVD Advisory· Published May 21, 2020· Updated Jun 17, 2026
CVE-2020-1066
CVE-2020-1066
Description
An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level.To exploit the vulnerability, an attacker would first have to access the local machine, and then run a malicious program.The update addresses the vulnerability by correcting how .NET Framework activates COM objects., aka '.NET Framework Elevation of Privilege Vulnerability'.
Affected products
3(expand)+ 2 more
- (no CPE)
- (no CPE)range: Service Pack 2 on Windows Server 2008 for 32-bit Systems Service Pack 2
- (no CPE)range: Windows 7 for 32-bit Systems Service Pack 1
Patches
Vulnerability mechanics
References
1- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1066nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.