Vulnerability Intelligence

🛡 CVE-2020-1027

Microsoft Windows Kernel Privilege Escalation Vulnerability
Microsoft Windows CWE-787

Ransomware use

CISA KEV

EPSS

4.5%
Moderate · 91th pct

Added to KEV

2022-05-23
CISA

Remediate by

2022-06-13
⚠ OVERDUE

CWE

CWE-787
weakness

📈 EPSS exploit probability

4.5%
FIRST EPSS — 30-day probability of exploitation in the wild · band Moderate · higher than 91% of all scored CVEs

⚠ KEV remediation overdue

CISA required federal remediation by 2022-06-13. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.

📄 Description

An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.

🛡 Add to case

Attach CVE-2020-1027 (Vulnerability / CVE) and pull all linked entities:
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php