Security Features in Microsoft Windows and Windows Server - CVE-2020-1259
Published: June 9, 2020
Vulnerability details
This vulnerability allows a remote attacker to bypass security rescritions feature.
The vulnerability exists due to the Windows Host Guardian Service improperly handles hashes recorded and logged. A remote authenticated attacker can change existing event log types to a type the parsers do not interpret and append their own hash without triggering an alert.
Affected software
Windows Server