CVE-2020-1080 is an elevation of privilege vulnerability in Windows Hyper-V affecting Windows 10, Windows Server 2016, and Windows Server 2019. It allows an attacker to gain elevated privileges on the host server due to improper memory handling. The vulnerability has a CVSS score of 8.8 (HIGH), indicating a significant impact on confidentiality, integrity, and availability, with a low attack complexity and requiring local access. While not actively exploited in the wild and lacking public exploit code, it has garnered some community discussion and media coverage. This vulnerability would likely be chained with other exploits to achieve arbitrary code execution.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1803CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:x64:* | ||
1809CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:x64:* | ||
1903CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:x64:* | ||
1909CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:x64:* | ||
2004CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:2004:*:*:*:*:*:x64:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.