peter bassill · operator
$ cve CVE-2020-1147 JSON

CVE-2020-1147 KEV EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 94% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-05-03.

Description

A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS93.97% — more likely to be exploited than 100% of all CVEs
On CISA KEVyes — remediate by 2022-05-03
Public exploityes
Published2020-07-14
Last modified2026-06-17

CISA KEV

NameMicrosoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability
Added2021-11-03
Due2022-05-03
Vendor / productMicrosoft / .NET Framework, SharePoint, Visual Studio
Ransomware usenone reported

Affected (14)

VendorProduct
microsoft.net core
microsoft.net framework
microsoftsharepoint enterprise server
microsoftsharepoint server
microsoftvisual studio 2017
microsoftvisual studio 2019
microsoftwindows 10
microsoftwindows 7
microsoftwindows 8.1
microsoftwindows rt 8.1
microsoftwindows server 2008
microsoftwindows server 2012
microsoftwindows server 2016
microsoftwindows server 2019

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD