VYPR
High severity8.8NVD Advisory· Published Oct 16, 2020· Updated Jun 17, 2026

CVE-2020-1080

CVE-2020-1080

Description

An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory. An attacker who successfully exploited these vulnerabilities could gain elevated privileges on a target operating system. This vulnerability by itself does not allow arbitrary code to be run. However, this vulnerability could be used in conjunction with one or more vulnerabilities (e.g. a remote code execution vulnerability and another elevation of privilege) that could take advantage of the elevated privileges when running. The update addresses the vulnerabilities by correcting how Windows Hyper-V handles objects in memory.

Affected products

14
  • cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:x64:*+ 6 more
    • cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*range: 10.0.0
    • cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:2004:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:x64:*range: 10.0.0
  • cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
    Range: 10.0.0
  • cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2016:1909:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2016:2004:*:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*range: 10.0.0
    • cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.