SB2020120837 - Security Features in Microsoft Windows Lock Screen
Published: December 8, 2020
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Security Features (CVE-ID: CVE-2020-17099)
The vulnerability allows a local attacker to bypass security features.
The vulnerability exists due to undisclosed issue in Windows Lock Screen. An attacker with physical access can perform actions that would allow them to execute code from the Windows lock screen in the context of the active user session.
Remediation
Install update from vendor's website.