An elevation of privilege vulnerability exists in Visual Studio and Visual Studio Code when they load software dependencies, aka 'Visual Studio and Visual Studio Code Elevation of Privilege Vulnerability'.
2020-07-14T23:15:17.760
2024-11-21T05:10:27.560
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | azure_storage_explorer | - | Yes |
Application | microsoft | typescript | - | Yes |
Application | microsoft | visual_studio_2017 | < 15.9.25 | Yes |
Application | microsoft | visual_studio_2019 | < 16.0.16 | Yes |
Application | microsoft | visual_studio_2019 | < 16.4.11 | Yes |
Application | microsoft | visual_studio_2019 | < 16.6.4 | Yes |
Application | microsoft | visual_studio_code | < 1.47.1 | Yes |