CVE-2021-41379
CVSS v3.1
5.5 (Medium)
CVSS v2.0
4.6 (Medium)
EPSS
0.32 % (71th)
Affected Products
18
Advisories
2
NVD Status
Analyzed
Windows Installer Elevation of Privilege Vulnerability
Weaknesses
- CWE-59
- Improper Link Resolution Before File Access ('Link Following')
- CVE Status
- PUBLISHED
- NVD Status
- Analyzed
- CNA
- Microsoft Corporation
- Published Date
-
2021-11-10 01:19:32
(2 years ago) - Updated Date
-
2024-07-24 16:21:53
(8 weeks ago)
Microsoft Windows Installer Privilege Escalation Vulnerability (CISA - Known Exploited Vulnerabilities Catalog)
- Description
- Microsoft Windows Installer contains an unspecified vulnerability that allows for privilege escalation.
- Required Action
- Apply updates per vendor instructions.
- Known to be Used in Ransomware Campaigns
- Known
- Notes
- https://nvd.nist.gov/vuln/detail/CVE-2021-41379
- Vendor
- Microsoft
- Product
- Windows
- In CISA Catalog from
-
2022-03-03
(2 years ago) - Due Date
-
2022-03-17
(2 years ago)
Affected Products
- Windows 10 1507
- Windows 10 1607
- Windows 10 1809
- Windows 10 1909
- Windows 10 2004
- Windows 10 20h2
- Windows 10 21h1
- Windows 11 21h2
- Windows 7
- Windows 8.1
- Windows Rt 8.1
- Windows Server 2004
- Windows Server 2008
- Windows Server 2012
- Windows Server 2016
- Windows Server 2019
- Windows Server 2022
- Windows Server 20h2
Loading...
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...