CVE Vulnerabilities

CVE-2020-0900

Published: Apr 15, 2020 | Modified: Nov 21, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
3.6 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An elevation of privilege vulnerability exists when the Visual Studio Extension Installer Service improperly handles file operations, aka Visual Studio Extension Installer Service Elevation of Privilege Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Visual_studio_2015Microsoftupdate_3 (including)update_3 (including)
Visual_studio_2017Microsoft15.9 (including)15.9 (including)
Visual_studio_2019Microsoft16.0 (including)16.0 (including)
Visual_studio_2019Microsoft16.4 (including)16.4 (including)
Visual_studio_2019Microsoft16.5.0 (including)16.5.0 (including)

References