An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.
2020-03-12T16:15:15.203
2025-04-04T13:01:58.867
Analyzed
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | microsoft | windows_10_1507 | - | Yes |
Operating System | microsoft | windows_10_1607 | - | Yes |
Operating System | microsoft | windows_10_1709 | - | Yes |
Operating System | microsoft | windows_10_1803 | - | Yes |
Operating System | microsoft | windows_10_1809 | - | Yes |
Operating System | microsoft | windows_10_1903 | - | Yes |
Operating System | microsoft | windows_10_1909 | - | Yes |
Operating System | microsoft | windows_7 | - | Yes |
Operating System | microsoft | windows_8.1 | - | Yes |
Operating System | microsoft | windows_rt_8.1 | - | Yes |
Operating System | microsoft | windows_server_1803 | - | Yes |
Operating System | microsoft | windows_server_1903 | - | Yes |
Operating System | microsoft | windows_server_1909 | - | Yes |
Operating System | microsoft | windows_server_2008 | - | Yes |
Operating System | microsoft | windows_server_2008 | r2 | Yes |
Operating System | microsoft | windows_server_2012 | - | Yes |
Operating System | microsoft | windows_server_2012 | r2 | Yes |
Operating System | microsoft | windows_server_2016 | - | Yes |
Operating System | microsoft | windows_server_2019 | - | Yes |