CVE-2020-1356: Microsoft Windows Server 2012

High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.

An elevation of privilege vulnerability exists when the Windows iSCSI Target Service improperly handles file operations, aka 'Windows iSCSI Target Service Elevation of Privilege Vulnerability'.

Affected products

  • Microsoft Windows Server 2012: affected versions not specified; version r2 only
  • Microsoft Windows Server 2016: affected versions not specified; version 1903 only; version 1909 only; version 2004 only
  • Microsoft Windows Server 2019: affected versions not specified

Published 2020-07-14. Last modified 2026-06-17.