7.8
CVE-2021-38646
- EPSS 64.94%
- Veröffentlicht 15.09.2021 12:15:15
- Zuletzt bearbeitet 07.03.2025 21:54:07
- Quelle secure@microsoft.com
- Teams Watchlist Login
- Unerledigt Login
Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
28.03.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog
Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability
SchwachstelleMicrosoft Office Access Connectivity Engine contains an unspecified vulnerability which can allow for remote code execution.
BeschreibungApply updates per vendor instructions.
Erforderliche MaßnahmenTyp | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 64.94% | 0.984 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
secure@microsoft.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|