High severity7.8NVD Advisory· Published Jul 14, 2020· Updated Jun 17, 2026
CVE-2020-1393
CVE-2020-1393
Description
An elevation of privilege vulnerability exists when the Windows Diagnostics Hub Standard Collector Service fails to properly sanitize input, leading to an unsecure library-loading behavior, aka 'Windows Diagnostics Hub Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1418.
Affected products
36cpe:2.3:a:microsoft:visual_studio:2015:update_3:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:microsoft:visual_studio:2015:update_3:*:*:*:*:*:*
- cpe:2.3:a:microsoft:visual_studio_2019:*:*:*:*:*:*:*:*range: >=16.0,<16.4.11
- (no CPE)range: 2015 Update 3
- cpe:2.3:a:microsoft:visual_studio_2017:*:*:*:*:*:*:*:*Range: >=15.0,<15.9.25
cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:2004:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2016:1909:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2016:2004:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
- Microsoft/Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8)v5Range: unspecified
- Microsoft/Microsoft Visual Studio 2019v5Range: 16.0
- Microsoft/Microsoft Visual Studio 2019 version 16.4 (includes 16.0 - 16.3)v5Range: unspecified
- Microsoft/Microsoft Visual Studio 2019 version 16.6 (includes 16.0 - 16.5)v5Range: unspecified
- Microsoft/Windows 10 Version 1903 for 32-bit Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 1903 for ARM64-based Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 1903 for x64-based Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 1909 for 32-bit Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 1909 for ARM64-based Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 1909 for x64-based Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 2004 for 32-bit Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 2004 for ARM64-based Systemsv5Range: unspecified
- Microsoft/Windows 10 Version 2004 for x64-based Systemsv5Range: unspecified
- Range: 2019
- Microsoft/Windows Server, version 1903 (Server Core installation)v5Range: unspecified
- Microsoft/Windows Server, version 1909 (Server Core installation)v5Range: unspecified
- Microsoft/Windows Server, version 2004 (Server Core installation)v5Range: unspecified
Patches
Vulnerability mechanics
References
1- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1393nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.