Windows Shell infrastructure是美国Microsoft公司的一个Windows运行应用的核心组件。该应用的任务是处理操作系统界面的多个图形元素,包括任务栏透明度和开始菜单。 Microsoft Shell infrastructure组件存在安全漏洞。攻击者借助该漏洞可以运行特制的应用程序,从而控制受影响的系统。以下产品及版本受到影响: Windows 10 1909版本, Windows 10 1709版本, Windows 10 1809版本, Windows Server
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Windows 10 Version 1803 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
|
|
| Microsoft | Windows 10 Version 1809 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*
|
|
| Microsoft | Windows Server 2019 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
|
|
| Microsoft | Windows 10 Version 1909 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:x86:*
|
|
| Microsoft | Windows 10 Version 1709 for 32-bit Systems | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*
|
|
| Microsoft | Windows 10 Version 1709 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*
|
|
| Microsoft | Windows 10 Version 1903 for 32-bit Systems | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*
|
|
| Microsoft | Windows 10 Version 1903 for x64-based Systems | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*
|
|
| Microsoft | Windows 10 Version 1903 for ARM64-based Systems | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*
|
|
| Microsoft | Windows 10 Version 1607 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*
|
|
| Microsoft | Windows Server 2016 | 10.0.0 ~ publication |
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-1595 | 9.9 CRITICAL | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-1210 | 9.9 CRITICAL | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-1523 | 8.9 HIGH | Microsoft SharePoint Server Tampering Vulnerability |
| CVE-2020-0718 | 8.8 HIGH | Active Directory Remote Code Execution Vulnerability |
| CVE-2020-0761 | 8.8 HIGH | Active Directory Remote Code Execution Vulnerability |
| CVE-2020-1129 | 8.8 HIGH | Microsoft Windows Codecs Library Remote Code Execution Vulnerability |
| CVE-2020-1012 | 8.8 HIGH | WinINet API Elevation of Privilege Vulnerability |
| CVE-2020-0922 | 8.8 HIGH | Microsoft COM for Windows Remote Code Execution Vulnerability |
| CVE-2020-1200 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-1452 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-1460 | 8.6 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2020-1453 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-1576 | 8.5 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-16875 | 8.4 HIGH | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2020-1285 | 8.4 HIGH | GDI+ Remote Code Execution Vulnerability |
| CVE-2020-1507 | 7.9 HIGH | Microsoft COM for Windows Elevation of Privilege Vulnerability |
| CVE-2020-1115 | 7.8 HIGH | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2020-1053 | 7.8 HIGH | DirectX Elevation of Privilege Vulnerability |
| CVE-2020-1098 | 7.8 HIGH | Windows Shell Infrastructure Component Elevation of Privilege Vulnerability |
| CVE-2020-0790 | 7.8 HIGH | Microsoft splwow64 Elevation of Privilege Vulnerability |
Showing top 20 of 129 CVEs. View all on vendor page → →
No comments yet