#VU28879 Security Features in Windows Server and Windows - CVE-2020-1259
Published: June 9, 2020
Windows Server
Windows
Microsoft
Description
This vulnerability allows a remote attacker to bypass security rescritions feature.
The vulnerability exists due to the Windows Host Guardian Service improperly handles hashes recorded and logged. A remote authenticated attacker can change existing event log types to a type the parsers do not interpret and append their own hash without triggering an alert.