Lucene search

K
mscveMicrosoftMS:CVE-2021-33744
HistoryJul 13, 2021 - 7:00 a.m.

Windows Secure Kernel Mode Security Feature Bypass Vulnerability

2021-07-1307:00:00
Microsoft
msrc.microsoft.com
17
windows
secure kernel mode
security
feature bypass
vulnerability
microsoft

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

5.3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:N

AI Score

7.3

Confidence

High

EPSS

0

Percentile

9.5%

Affected configurations

Vulners
Node
microsoftwindows_server_20h2Range<10.0.19042.1110
OR
microsoftwindows_10_20h2Range<10.0.19042.1110x64
OR
microsoftwindows_server_2004Range<10.0.19041.1110
OR
microsoftwindows_10_2004Range<10.0.19041.1110
OR
microsoftwindows_10_21h1Range<10.0.19043.1110x64
OR
microsoftwindows_10_1909Range<10.0.18363.1679
OR
microsoftwindows_server_2019Range<10.0.17763.2061
OR
microsoftwindows_server_2019Range<10.0.17763.2061
OR
microsoftwindows_10_1809Range<10.0.17763.2061x64
VendorProductVersionCPE
microsoftwindows_server_20h2*cpe:2.3:o:microsoft:windows_server_20h2:*:*:*:*:*:*:*:*
microsoftwindows_10_20h2*cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:x64:*
microsoftwindows_server_2004*cpe:2.3:o:microsoft:windows_server_2004:*:*:*:*:*:*:*:*
microsoftwindows_10_2004*cpe:2.3:o:microsoft:windows_10_2004:*:*:*:*:*:*:*:*
microsoftwindows_10_21h1*cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:x64:*
microsoftwindows_10_1909*cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:*:*
microsoftwindows_server_2019*cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
microsoftwindows_10_1809*cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

5.3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:N

AI Score

7.3

Confidence

High

EPSS

0

Percentile

9.5%