vulnerability

Microsoft Windows: CVE-2020-1112: Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability

Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
May 12, 2020
Added
Jun 9, 2020
Modified
Sep 5, 2025

Description

An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.

Solutions

microsoft-windows-windows_10-1507-kb4556826microsoft-windows-windows_10-1607-kb4556813microsoft-windows-windows_10-1709-kb4556812microsoft-windows-windows_10-1803-kb4556807microsoft-windows-windows_10-1809-kb4551853microsoft-windows-windows_10-1903-kb4556799microsoft-windows-windows_10-1909-kb4556799microsoft-windows-windows_server_2012-kb4556852microsoft-windows-windows_server_2012_r2-kb4556853microsoft-windows-windows_server_2016-1607-kb4556813microsoft-windows-windows_server_2019-1809-kb4551853msft-kb4556799-2e69bf96-184c-46b9-8937-306e23bdb930msft-kb4556799-7f570c23-239e-430c-b403-391861eae9a3msft-kb4556843-18ba7a1f-f3d5-4939-83fa-64f96dd1eeefmsft-kb4556843-9814f135-936f-4ad1-aed5-17b04b171ad3msft-kb4556843-a42409fa-d080-4ad0-87a2-e8f2720c3106msft-kb4556843-f8a7bc32-9e4e-487d-84fa-6a54b2bf9b18msft-kb4556843-f9c55547-ccbd-43a7-879f-ba43e8f87a26msft-kb4556852-b1ad1cae-3e60-45f4-807e-20d602effdc7msft-kb4556852-db559421-c2a0-4db9-8f01-d0095d20dd9fmsft-kb4556853-e37bb647-80a1-4ec3-8908-fbe83547cafemsft-kb4556853-fed44027-6e0b-43e8-a358-788e4b27879fmsft-kb4556854-66f02eb5-75fc-44ac-abbd-33c423b2eb72msft-kb4556854-ee5e91bb-be4b-4cde-af59-81477f953897
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.