CVE-2020-0876 is an information disclosure vulnerability in the win32k component of Microsoft Windows 10 and Windows Server 2016. It has a high severity CVSS score of 7.5, indicating that an unauthenticated attacker could remotely exploit this flaw to gain kernel information. While the vulnerability has a high FAUCET risk score and above-average community discussion and media coverage, there is no evidence of active exploitation, nor are public exploit codes like Metasploit or ExploitDB available. This suggests a theoretical risk rather than an immediate, widespread threat.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1903CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:* | ||
1909CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:*:* | ||
1903CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:* | ||
1909CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:1909:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.