CVE detail
CVE-2020-1408
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Microsoft Graphics Remote Code Execution Vulnerability'.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 6.9 · diversity 5.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
1 source links · newest first
- Microsoft July 2020 Security Updates address 123 vulnerabilitiesSecurity Affairs
Microsoft July 2020 addressed 123 security flaws across 13 products, including a 17-year-old wormable issue for hijacking Microsoft Windows Server dubbed SigRed. Microsoft July 2020 addressed 123 security vulnerabilities impacting 13 products, none of them has been observed being exploited in attacks in the wild. The July 2020 security release consists of security updates for […]
newssecurityaffairs.comJul 15, 2020, 9:10 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2019-1235CVSS 7.8 · High
An elevation of privilege vulnerability exists in Windows Text Service Framework (TSF) when the TSF server process does not validate the source of input or commands it receives, a…
- CVE-2023-21776CVSS 5.5 · Medium
Windows Kernel Information Disclosure Vulnerability
- CVE-2023-21765CVSS 7.8 · High
Windows Print Spooler Elevation of Privilege Vulnerability
- CVE-2023-21760CVSS 7.1 · High
Windows Print Spooler Elevation of Privilege Vulnerability
- CVE-2023-21757CVSS 7.5 · High
Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability
- CVE-2023-21746CVSS 7.8 · High
Windows NTLM Elevation of Privilege Vulnerability
1 mention