7.8

CVE-2021-33771

Warning

Windows Kernel Elevation of Privilege Vulnerability

Data is provided by the National Vulnerability Database (NVD)
MicrosoftWindows 10 1507 Version < 10.0.10240.19003
MicrosoftWindows 10 1607 Version < 10.0.14393.4530
MicrosoftWindows 10 1809 Version < 10.0.17763.2061
MicrosoftWindows 10 1909 Version < 10.0.18363.1679
MicrosoftWindows 10 2004 Version < 10.0.19041.1110
MicrosoftWindows 10 20h2 Version < 10.0.19042.1110
MicrosoftWindows 10 21h1 Version < 10.0.19043.1110
MicrosoftWindows 8.1 Version-
MicrosoftWindows Rt 8.1 Version-
MicrosoftWindows Server 2004 Version < 10.0.19041.1110
MicrosoftWindows Server 2008 Version- Updatesp1 HwPlatformx64
MicrosoftWindows Server 2008 Version- Updatesp2
MicrosoftWindows Server 2012 Version- Updater2
MicrosoftWindows Server 2016 Version < 10.0.14393.4530
MicrosoftWindows Server 2019 Version < 10.0.17763.2061
MicrosoftWindows Server 20h2 Version < 10.0.19042.1110

03.11.2021: CISA Known Exploited Vulnerabilities (KEV) Catalog

Microsoft Windows Kernel Privilege Escalation Vulnerability

Vulnerability

Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation.

Description

Apply updates per vendor instructions.

Required actions
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.75% 0.723
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
secure@microsoft.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H