8.4
CVE-2021-33739
- EPSS 11.7%
- Published 08.06.2021 23:15:09
- Last modified 07.03.2025 21:54:07
- Source secure@microsoft.com
- Teams watchlist Login
- Open Login
Microsoft DWM Core Library Elevation of Privilege Vulnerability
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Windows 10 1909 Version < 10.0.18363.1621
Microsoft ≫ Windows 10 2004 Version < 10.0.19041.1052
Microsoft ≫ Windows 10 20h2 Version < 10.0.19042.1052
Microsoft ≫ Windows 10 21h1 Version < 10.0.19043.1052
Microsoft ≫ Windows Server 2004 Version < 10.0.19041.1052
Microsoft ≫ Windows Server 20h2 Version < 10.0.19042.1052
03.11.2021: CISA Known Exploited Vulnerabilities (KEV) Catalog
Microsoft Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability
VulnerabilityMicrosoft Desktop Window Manager (DWM) Core Library contains an unspecified vulnerability that allows for privilege escalation.
DescriptionApply updates per vendor instructions.
Required actionsType | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 11.7% | 0.934 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
secure@microsoft.com | 8.4 | 2.5 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|