Microsoft Visual Studio Code是美国微软(Microsoft)公司的一款开源的代码编辑器。 Microsoft Visual Studio Code中Python扩展加载配置文件的过程存在远程代码执行漏洞。攻击者可通过诱使用户复制资源库并在Visual Studio Code中将其打开利用该漏洞在当前用户的上下文中运行任意代码。以下产品及版本受到影响: Visual Studio Code版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Python extension for Visual Studio Code | 2020< publication |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Python extension for Visual Studio Code | 2020 ~ publication | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-1117 | 8.8 HIGH | Microsoft Color Management Remote Code Execution Vulnerability |
| CVE-2020-1126 | 8.8 HIGH | Media Foundation Memory Corruption Vulnerability |
| CVE-2020-1118 | 8.6 HIGH | Microsoft Windows Transport Layer Security Denial of Service Vulnerability |
| CVE-2020-1112 | 8.5 HIGH | Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability |
| CVE-2020-1086 | 7.8 HIGH | Windows Runtime Elevation of Privilege Vulnerability |
| CVE-2020-1077 | 7.8 HIGH | Windows Runtime Elevation of Privilege Vulnerability |
| CVE-2020-1078 | 7.8 HIGH | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2020-1142 | 7.8 HIGH | Windows GDI Elevation of Privilege Vulnerability |
| CVE-2020-1082 | 7.8 HIGH | Windows Error Reporting Elevation of Privilege Vulnerability |
| CVE-2020-1139 | 7.8 HIGH | Windows Runtime Elevation of Privilege Vulnerability |
| CVE-2020-1140 | 7.8 HIGH | DirectX Elevation of Privilege Vulnerability |
| CVE-2020-1137 | 7.8 HIGH | Windows Push Notification Service Elevation of Privilege Vulnerability |
| CVE-2020-1081 | 7.8 HIGH | Windows Printer Service Elevation of Privilege Vulnerability |
| CVE-2020-1135 | 7.8 HIGH | Windows Graphics Component Elevation of Privilege Vulnerability |
| CVE-2020-1136 | 7.8 HIGH | Media Foundation Memory Corruption Vulnerability |
| CVE-2020-1079 | 7.8 HIGH | Microsoft Windows Elevation of Privilege Vulnerability |
| CVE-2020-1110 | 7.8 HIGH | Windows Update Stack Elevation of Privilege Vulnerability |
| CVE-2020-1090 | 7.8 HIGH | Windows Runtime Elevation of Privilege Vulnerability |
| CVE-2020-1109 | 7.8 HIGH | Windows Update Stack Elevation of Privilege Vulnerability |
| CVE-2020-1114 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
Showing top 20 of 112 CVEs. View all on vendor page → →
No comments yet