Lucene search

K
mscveMicrosoftMS:CVE-2021-36934
HistoryJul 20, 2021 - 7:00 a.m.

Windows Elevation of Privilege Vulnerability

2021-07-2007:00:00
Microsoft
msrc.microsoft.com
62
vulnerability
windows
access control lists
sam database
arbitrary code
system privileges
exploit
shadow copies

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

74.3%

An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) database. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.

An attacker must have the ability to execute code on a victim system to exploit this vulnerability.

After installing this security update, you must manually delete all shadow copies of system files, including the SAM database, to fully mitigate this vulnerabilty. Simply installing this security update will not fully mitigate this vulnerability. See KB5005357- Delete Volume Shadow Copies.

Affected configurations

Vulners
Node
microsoftwindows_10_20h2Range<10.0.19042.1165arm64
OR
microsoftwindows_10_20h2Range<10.0.19042.1165
OR
microsoftwindows_10_20h2Range<10.0.19042.1165x64
OR
microsoftwindows_10_2004Range<10.0.19041.1165
OR
microsoftwindows_10_2004Range<10.0.19041.1165
OR
microsoftwindows_10_2004Range<10.0.19041.1165
OR
microsoftwindows_10_21h1Range<10.0.19043.1165
OR
microsoftwindows_10_21h1Range<10.0.19043.1165arm64
OR
microsoftwindows_10_21h1Range<10.0.19043.1165x64
OR
microsoftwindows_10_1909Range<10.0.18363.1734
OR
microsoftwindows_10_1909Range<10.0.18363.1734
OR
microsoftwindows_10_1909Range<10.0.18363.1734
OR
microsoftwindows_10_1809Range<10.0.17763.2114arm64
OR
microsoftwindows_10_1809Range<10.0.17763.2114x64
OR
microsoftwindows_10_1809Range<10.0.17763.2114
VendorProductVersionCPE
microsoftwindows_10_20h2*cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:arm64:*
microsoftwindows_10_20h2*cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:*:*
microsoftwindows_10_20h2*cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:x64:*
microsoftwindows_10_2004*cpe:2.3:o:microsoft:windows_10_2004:*:*:*:*:*:*:*:*
microsoftwindows_10_21h1*cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:*:*
microsoftwindows_10_21h1*cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:arm64:*
microsoftwindows_10_21h1*cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:x64:*
microsoftwindows_10_1909*cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:*:*
microsoftwindows_10_1809*cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:arm64:*
microsoftwindows_10_1809*cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
Rows per page:
1-10 of 111

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

74.3%