CVE-2020-0787
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.
- Affected products
- Windows, Windows Background Intelligent Transfer Service
- Microsoft Windows 10 1507
- All versions
- Microsoft Windows 10 1607
- All versions
- Microsoft Windows 10 1709
- All versions
- Microsoft Windows 10 1803
- All versions
- Microsoft Windows 10 1809
- All versions
- Microsoft Windows 10 1903
- All versions
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 42.5% (99th percentile)
- Weakness
- CWE-59
- NVD status
- Analyzed
- Published
- 2020-03-12
CVE-2020-0787 at NVD
7 known exploits for CVE-2020-0787
Proof-of-concept code and exploit modules indexed by Sploitus
dazzleUP - A Tool That Detects The Privilege Escalation Vulnerabilities Caused By Misconfigurations And Missing Updates In The Windows OS
Linux/x86 /etc/hosts Mapping Add Polymorphic Shellcode
Background Intelligent Transfer Service Privilege Escalation Exploit
Linux/x86 ASLR Deactivation Polymorphic - Shellcode
Background Intelligent Transfer Service CVE-2020-0787 - Privilege Escalation
Background Intelligent Transfer Service Privilege Escalation
Background Intelligent Transfer Service Arbitrary File Move Privilege Elevation Vulnerability