National Security Agency (NSA) and confirmed that this critical bug allows an attacker to perform remote code execution on vulnerable Windows client and server. Microsoft released a patch for this critical cryptographic vulnerability (CVE-2020-0601) Microsoft said that the vulnerability in the usermode cryptographic library, CRYPT32.DLL, that affects Windows 10 systems. The successful exploitation of the vulnerability allow the attacker to conduct man-in-the-middle attacks and decrypt confidential information on user connections to the affected software.”]

