vulnerability

Microsoft Windows: CVE-2020-1056: Microsoft Edge Elevation of Privilege Vulnerability

Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:N)
Published
May 12, 2020
Added
Jun 9, 2020
Modified
Sep 5, 2025

Description

An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain.In a web-based attack scenario, an attacker could host a website that is used to attempt to exploit the vulnerability, aka 'Microsoft Edge Elevation of Privilege Vulnerability'.

Solutions

microsoft-windows-windows_10-1607-kb4556813microsoft-windows-windows_10-1709-kb4556812microsoft-windows-windows_10-1803-kb4556807microsoft-windows-windows_10-1809-kb4551853microsoft-windows-windows_10-1903-kb4556799microsoft-windows-windows_10-1909-kb4556799microsoft-windows-windows_server_2016-1607-kb4556813microsoft-windows-windows_server_2019-1809-kb4551853msft-kb4556799-2e69bf96-184c-46b9-8937-306e23bdb930msft-kb4556799-7f570c23-239e-430c-b403-391861eae9a3
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.