vulnerability

Microsoft Windows: CVE-2020-1117: Microsoft Color Management Remote Code Execution Vulnerability

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
May 12, 2020
Added
Jun 9, 2020
Modified
Sep 5, 2025

Description

A remote code execution vulnerability exists in the way that the Color Management Module (ICM32.dll) handles objects in memory, aka 'Microsoft Color Management Remote Code Execution Vulnerability'.

Solutions

microsoft-windows-windows_10-1607-kb4556813microsoft-windows-windows_10-1709-kb4556812microsoft-windows-windows_10-1803-kb4556807microsoft-windows-windows_10-1809-kb4551853microsoft-windows-windows_10-1903-kb4556799microsoft-windows-windows_10-1909-kb4556799microsoft-windows-windows_server_2016-1607-kb4556813microsoft-windows-windows_server_2019-1809-kb4551853msft-kb4556799-2e69bf96-184c-46b9-8937-306e23bdb930msft-kb4556799-7f570c23-239e-430c-b403-391861eae9a3
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.