You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 20847
About this tag
CVE-20847 is a Windows File Explorer spoofing vulnerability documented in Microsoft's Security Update Guide. The flaw allows an attacker to present misleading UI or network endpoints to users or the system, potentially leading to privilege escalation or data exposure. File Explorer is a high-value target because it parses many file formats and runs third-party preview handlers and shell extensions. Microsoft's published confidence metric helps defenders assess the advisory. The tag covers patch guidance, exploitation risks, and mitigation strategies for this specific CVE, with discussions focusing on how administrators should prioritize and apply updates to protect enterprise environments.
Microsoft’s entry for CVE‑2026‑20847 in the Security Update Guide confirms a Windows File Explorer vulnerability that allows an attacker to perform spoofing—presenting misleading UI or network endpoints to a user or the system—and the vendor’s published “confidence” metric is central to how...