Patch Tuesday Archive
Patch Tuesday June 2020
Total CVEs
133
Critical
12
Important
118
Exploited
0
Publicly Disclosed
0
All CVEs this month 133
| CVE | Title | Severity | CVSS | Product | Exploited | Disclosed | Diffed |
|---|---|---|---|---|---|---|---|
| CVE-2020-0915 | Windows GDI Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-0916 | Windows GDI Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-0986 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1181 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Critical | 8.8 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1183 | Microsoft Office SharePoint XSS Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1225 | Microsoft Excel Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft Office | - | - | - |
| CVE-2020-1226 | Microsoft Excel Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft Office | - | - | - |
| CVE-2020-1229 | Microsoft Outlook Security Feature Bypass Vulnerability | Important | 4.3 |
Microsoft Office | - | - | - |
| CVE-2020-1334 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1348 | Windows GDI Information Disclosure Vulnerability | Important | 6.5 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1425 | Microsoft Windows Codecs Library Remote Code Execution Vulnerability | Critical | 7.8 |
Microsoft Windows Codecs Library | - | - | - |
| CVE-2020-1196 | Windows Print Configuration Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1197 | Windows Error Reporting Manager Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1199 | Windows Feedback Hub Elevation of Privilege Vulnerability | Important | 7.8 |
HoloLens | - | - | - |
| CVE-2020-1201 | Windows Now Playing Session Manager Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1202 | Diagnostic Hub Standard Collector Elevation of Privilege Vulnerability | Important | 7.8 |
Diagnostics Hub | - | - | - |
| CVE-2020-1203 | Diagnostic Hub Standard Collector Elevation of Privilege Vulnerability | Important | 7.8 |
Diagnostics Hub | - | - | - |
| CVE-2020-1204 | Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability | Important | 7.1 |
Microsoft Windows | - | - | - |
| CVE-2020-1206 | Windows SMBv3 Client/Server Information Disclosure Vulnerability | Important | 7.5 |
Windows SMB | - | - | - |
| CVE-2020-1207 | Win32k Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1208 | Jet Database Engine Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft JET Database Engine | - | - | - |
| CVE-2020-1209 | Windows Network List Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1211 | Connected Devices Platform Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1212 | OLE Automation Elevation of Privilege Vulnerability | Important | 7.8 |
Windows OLE | - | - | - |
| CVE-2020-1213 | VBScript Remote Code Execution Vulnerability | Critical | 7.5 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1214 | VBScript Remote Code Execution Vulnerability | Important | 7.5 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1215 | VBScript Remote Code Execution Vulnerability | Low | 7.5 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1216 | VBScript Remote Code Execution Vulnerability | Critical | 7.5 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1217 | Windows Runtime Information Disclosure Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1219 | Microsoft Browser Memory Corruption Vulnerability | Critical | 7.5 |
Microsoft Browsers | - | - | - |
| CVE-2020-1220 | Microsoft Edge (Chromium-based) in IE Mode Spoofing Vulnerability | Important | 6.1 |
Microsoft Edge (Chromium-based) in IE Mode | - | - | - |
| CVE-2020-1222 | Microsoft Store Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| ADV200010 | June 2020 Adobe Flash Security Update | Critical | - | Adobe Flash Player | - | - | - |
| CVE-2020-1340 | NuGetGallery Spoofing Vulnerability | Important | 5.4 |
Open Source Software | - | - | - |
| CVE-2020-1343 | Visual Studio Code Live Share Information Disclosure Vulnerability | Important | 5.9 |
Visual Studio | - | - | - |
| CVE-2020-1441 | Windows Spatial Data Service Elevation of Privilege Vulnerability | Important | 7 |
Microsoft Windows | - | - | - |
| CVE-2020-1457 | Microsoft Windows Codecs Library Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft Windows Codecs Library | - | - | - |
| CVE-2020-1073 | Scripting Engine Memory Corruption Vulnerability | Critical | 8.1 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1120 | Connected User Experiences and Telemetry Service Denial of Service Vulnerability | Important | 5.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1148 | Microsoft SharePoint Spoofing Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1194 | Windows Registry Denial of Service Vulnerability | Important | 5.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1223 | Word for Android Remote Code Execution Vulnerability | Important | 8.8 |
Android App | - | - | - |
| CVE-2020-1230 | VBScript Remote Code Execution Vulnerability | Low | 7.5 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1231 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1232 | Media Foundation Information Disclosure Vulnerability | Important | 6.5 |
Windows Media Player | - | - | - |
| CVE-2020-1233 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1234 | Windows Error Reporting Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1235 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1236 | Jet Database Engine Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft JET Database Engine | - | - | - |
| CVE-2020-1237 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1238 | Media Foundation Memory Corruption Vulnerability | Important | 8.8 |
Windows Media | - | - | - |
| CVE-2020-1239 | Media Foundation Memory Corruption Vulnerability | Important | 8.8 |
Windows Media Player | - | - | - |
| CVE-2020-1242 | Microsoft Edge Information Disclosure Vulnerability | Important | 5.3 |
Microsoft Edge (HTML-based) | - | - | - |
| CVE-2020-1246 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1247 | Win32k Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1262 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1269 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1271 | Windows Backup Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1274 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1275 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1277 | Windows Installer Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Installer | - | - | - |
| CVE-2020-1278 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | Important | 7.8 |
Diagnostics Hub | - | - | - |
| CVE-2020-1279 | Windows Lockscreen Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Lock Screen | - | - | - |
| CVE-2020-1280 | Windows Bluetooth Service Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1282 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1284 | Windows SMBv3 Client/Server Denial of Service Vulnerability | Important | 6.5 |
Windows SMB | - | - | - |
| CVE-2020-1286 | Windows Shell Remote Code Execution Vulnerability | Critical | 8.8 |
Windows Shell | - | - | - |
| CVE-2020-1294 | Windows WalletService Elevation of Privilege Vulnerability | Important | 7.8 |
Windows WalletService | - | - | - |
| CVE-2020-1295 | Microsoft SharePoint Elevation of Privilege Vulnerability | Important | 8.8 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1298 | Microsoft Office SharePoint XSS Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1300 | Windows Remote Code Execution Vulnerability | Critical | 8.8 |
Windows Print Spooler Components | - | - | - |
| CVE-2020-1307 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1310 | Win32k Elevation of Privilege Vulnerability | Important | 6.7 |
Windows Kernel | - | - | - |
| CVE-2020-1311 | Component Object Model Elevation of Privilege Vulnerability | Important | 7.8 |
Windows COM | - | - | - |
| CVE-2020-1312 | Windows Installer Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1316 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1320 | Microsoft Office SharePoint XSS Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1321 | Microsoft Office Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft Office | - | - | - |
| CVE-2020-1322 | Microsoft Project Information Disclosure Vulnerability | Important | 6.5 |
Microsoft Office | - | - | - |
| CVE-2020-1324 | Windows Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1331 | System Center Operations Manager Spoofing Vulnerability | Important | 5.4 |
System Center | - | - | - |
| CVE-2020-1160 | Microsoft Graphics Component Information Disclosure Vulnerability | Important | 5.5 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1162 | Windows Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1163 | Microsoft Windows Defender Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Malware Protection Engine | - | - | - |
| CVE-2020-1170 | Microsoft Windows Defender Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Malware Protection Engine | - | - | - |
| CVE-2020-1177 | Microsoft Office SharePoint XSS Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1178 | Microsoft SharePoint Server Elevation of Privilege Vulnerability | Important | 8.8 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1241 | Windows Kernel Security Feature Bypass Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1244 | Connected User Experiences and Telemetry Service Denial of Service Vulnerability | Important | 7.1 |
Microsoft Windows | - | - | - |
| CVE-2020-1248 | GDI+ Remote Code Execution Vulnerability | Critical | 8.8 |
Microsoft Windows PDF | - | - | - |
| CVE-2020-1251 | Win32k Elevation of Privilege Vulnerability | Important | 6.7 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1253 | Win32k Elevation of Privilege Vulnerability | Important | 6.7 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1254 | Windows Modules Installer Service Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Update Stack | - | - | - |
| CVE-2020-1255 | Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability | Important | 8.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1257 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Diagnostic Hub | - | - | - |
| CVE-2020-1258 | DirectX Elevation of Privilege Vulnerability | Important | 6.7 |
Microsoft Graphics Component | - | - | - |
| CVE-2020-1259 | Windows Host Guardian Service Security Feature Bypass Vulnerability | Important | 4.3 |
Microsoft Windows | - | - | - |
| CVE-2020-1260 | VBScript Remote Code Execution Vulnerability | Moderate | 7.5 |
Microsoft Scripting Engine | - | - | - |
| CVE-2020-1261 | Windows Error Reporting Information Disclosure Vulnerability | Important | 5.5 |
Windows Error Reporting | - | - | - |
| CVE-2020-1263 | Windows Error Reporting Information Disclosure Vulnerability | Important | 5.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1264 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1265 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1266 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1268 | Windows Service Information Disclosure Vulnerability | Important | 5.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1270 | Windows WLAN Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1272 | Windows Installer Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Installer | - | - | - |
| CVE-2020-1273 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1276 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2020-1281 | Windows OLE Remote Code Execution Vulnerability | Critical | 8.8 |
Windows OLE | - | - | - |
| CVE-2020-1283 | Windows Denial of Service Vulnerability | Important | 6.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1287 | Windows WalletService Elevation of Privilege Vulnerability | Important | 7.8 |
Windows WalletService | - | - | - |
| CVE-2020-1289 | Microsoft SharePoint Spoofing Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1290 | Win32k Information Disclosure Vulnerability | Important | 5.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1291 | Windows Network Connections Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1292 | OpenSSH for Windows Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1293 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Diagnostic Hub | - | - | - |
| CVE-2020-1296 | Windows Diagnostics & feedback Information Disclosure Vulnerability | Important | 5.5 |
Microsoft Windows | - | - | - |
| CVE-2020-1297 | Microsoft Office SharePoint XSS Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1299 | LNK Remote Code Execution Vulnerability | Critical | 8.8 |
Windows Shell | - | - | - |
| CVE-2020-1301 | Windows SMB Authenticated Remote Code Execution Vulnerability | Important | 8.8 |
Windows SMB | - | - | - |
| CVE-2020-1302 | Windows Installer Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Installer | - | - | - |
| CVE-2020-1304 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Media | - | - | - |
| CVE-2020-1305 | Windows State Repository Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1306 | Windows Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1309 | Microsoft Store Runtime Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1313 | Windows Update Orchestrator Service Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1314 | Windows Text Service Framework Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1315 | Internet Explorer Information Disclosure Vulnerability | Important | 5.3 |
Internet Explorer | - | - | - |
| CVE-2020-1317 | Group Policy Elevation of Privilege Vulnerability | Important | 8.8 |
Microsoft Windows | - | - | - |
| CVE-2020-1318 | Microsoft Office SharePoint XSS Vulnerability | Important | 5.4 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1323 | SharePoint Open Redirect Vulnerability | Important | 6.1 |
Microsoft Office SharePoint | - | - | - |
| CVE-2020-1327 | Azure DevOps Server HTML Injection Vulnerability | Important | 6.1 |
Azure DevOps | - | - | - |
| CVE-2020-1329 | Microsoft Bing Search Spoofing Vulnerability | Important | 6.5 |
Apps | - | - | - |
Threat Categories 6
| Threat Category | CVEs | Critical |
|---|---|---|
| Elevation of Privilege | 71 | - |
| Remote Code Execution | 26 | 12 |
| Information Disclosure | 14 | - |
| Spoofing | 14 | - |
| Denial of Service | 5 | - |
| Security Feature Bypass | 3 | - |
Affected Products 36
| Product | CVEs | Exploited |
|---|---|---|
| Microsoft Windows | 41 | - |
| Windows Kernel | 14 | - |
| Microsoft Office SharePoint | 12 | - |
| Microsoft Graphics Component | 9 | - |
| Microsoft Scripting Engine | 7 | - |
| Microsoft Office | 5 | - |
| Diagnostics Hub | 3 | - |
| Windows Installer | 3 | - |
| Windows SMB | 3 | - |
| Microsoft JET Database Engine | 2 | - |
| Microsoft Malware Protection Engine | 2 | - |
| Microsoft Windows Codecs Library | 2 | - |
| Windows Diagnostic Hub | 2 | - |
| Windows Media | 2 | - |
| Windows Media Player | 2 | - |
| Windows OLE | 2 | - |
| Windows Shell | 2 | - |
| Windows WalletService | 2 | - |
| Adobe Flash Player | 1 | - |
| Android App | 1 | - |
| Apps | 1 | - |
| Azure DevOps | 1 | - |
| HoloLens | 1 | - |
| Internet Explorer | 1 | - |
| Microsoft Browsers | 1 | - |
| Microsoft Edge (Chromium-based) in IE Mode | 1 | - |
| Microsoft Edge (HTML-based) | 1 | - |
| Microsoft Windows PDF | 1 | - |
| Open Source Software | 1 | - |
| System Center | 1 | - |
| Visual Studio | 1 | - |
| Windows COM | 1 | - |
| Windows Error Reporting | 1 | - |
| Windows Lock Screen | 1 | - |
| Windows Print Spooler Components | 1 | - |
| Windows Update Stack | 1 | - |