Microsoft Visual Studio Code是美国微软(Microsoft)公司的一款开源的代码编辑器。 Microsoft Visual Studio Code中Python扩展加载配置文件的过程存在远程代码执行漏洞。攻击者可通过诱使用户复制资源库并在Visual Studio Code中将其打开利用该漏洞在当前用户的上下文中运行任意代码。以下产品及版本受到影响: Visual Studio Code版本。
| 厂商 | 产品 | 版本范围 | 状态 |
|---|---|---|---|
| Microsoft | Python extension for Visual Studio Code | 2020< publication |
affected |
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Microsoft | Python extension for Visual Studio Code | 2020 ~ publication | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|
未找到公开 POC。
登录以生成 AI POC| CVE-2020-1117 | 8.8 HIGH | Microsoft Windows 缓冲区错误漏洞 |
| CVE-2020-1126 | 8.8 HIGH | Microsoft Windows Media Foundation 缓冲区错误漏洞 |
| CVE-2020-1118 | 8.6 HIGH | Microsoft Windows和Windows Server 安全漏洞 |
| CVE-2020-1112 | 8.5 HIGH | Microsoft Windows和Windows Server 代码问题漏洞 |
| CVE-2020-1086 | 7.8 HIGH | Microsoft Windows Runtime 安全漏洞 |
| CVE-2020-1077 | 7.8 HIGH | Microsoft Windows Runtime 安全漏洞 |
| CVE-2020-1078 | 7.8 HIGH | Microsoft Windows Installer 安全漏洞 |
| CVE-2020-1142 | 7.8 HIGH | Microsoft Windows Graphics Device Interface 安全漏洞 |
| CVE-2020-1082 | 7.8 HIGH | Microsoft Windows Error Reporting 路径遍历漏洞 |
| CVE-2020-1139 | 7.8 HIGH | Microsoft Windows Runtime 安全漏洞 |
| CVE-2020-1140 | 7.8 HIGH | Microsoft Windows DirectX 安全漏洞 |
| CVE-2020-1137 | 7.8 HIGH | Microsoft Windows Push Notification Service 安全漏洞 |
| CVE-2020-1081 | 7.8 HIGH | Microsoft Windows Printer Service 安全漏洞 |
| CVE-2020-1135 | 7.8 HIGH | Microsoft Windows Graphics Component 安全漏洞 |
| CVE-2020-1136 | 7.8 HIGH | Microsoft Windows Media Foundation 缓冲区错误漏洞 |
| CVE-2020-1079 | 7.8 HIGH | Microsoft Windows 安全漏洞 |
| CVE-2020-1110 | 7.8 HIGH | Microsoft Windows和Windows Server 安全漏洞 |
| CVE-2020-1090 | 7.8 HIGH | Microsoft Windows Runtime 安全漏洞 |
| CVE-2020-1109 | 7.8 HIGH | Microsoft Windows和Windows Server 安全漏洞 |
| CVE-2020-1114 | 7.8 HIGH | Microsoft Windows Kernel 安全漏洞 |
显示前 20 条,共 112 条。 查看全部 → →
暂无评论