Windows Lockscreen Elevation of Privilege Vulnerability - CVE-2020-1279
An elevation of privilege vulnerability exists when Windows Lockscreen fails to properly load spotlight images from a secure location. An attacker who successfully exploited the vulnerability could execute commands with elevated permissions. An authenticated attacker could modify a registry value to exploit this vulnerability. The security update addresses the vulnerability by ensuring that the spotlight images are always loaded from a secure location.
- Microsoft Windows Server 2016
- Microsoft Windows 10
- Microsoft Windows Server 2019