CVE-2021-41379

Description from NVD

Windows Installer Elevation of Privilege Vulnerability

Information Acquisition Date:2021-12-01T14:54Z
CVSS 2.0: 4.6 MEDIUM CVSS 3.x: 7.8 HIGH

▼ CVSS3 Vec CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

▼ CVSS2 Vec AV:L/AC:L/Au:N/C:P/I:P/A:P

NVD References

 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-41379
     source:MISC
     tags:Patch    Vendor Advisory    
 https://www.zerodayinitiative.com/advisories/ZDI-21-1308/
     source:MISC
     tags:Third Party Advisory    

This vulnerability may involve a PoC.

Description from Forti

Microsoft: Windows Installer Elevation of Privilege Vulnerability

Information Acquisition Date:2021/11/27

Affected Products

Impact

Recommended Actions

References

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag: Windows(2 tweets)



List of frequently cited URLs

URLNum of Times Referred to
http://cyberiqs.com/latestnews46
https://lists.astaro.com/ASGV9-IPS-rules.html#024
http://Microsoft.Microsoft10
https://www.helpnetsecurity.com/2021/11/24/cve-2021-41379/?...9
https://portal.msrc.microsoft.com/en-us/security-guidance9
http://Microsoft.Windows7
https://noticiasseguridad.com/vulnerabilidades/cve-2021-413...7
https://threatpost.com/unpatched-windows-zero-day-privilege...6
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2...6
https://www.bleepingcomputer.com/news/microsoft/new-windows...5
https://attackerkb.com/topics/7LstI2clmF/cve-2021-413794
https://github.com/klinix5/InstallerFileTakeOver3
https://twitter.com/cyb3rops/status/14627116854841016343
https://www.mcafee.com/enterprise/en-us/lp/insights-preview...3
https://thehackernews.com/2021/11/unpatched-unauthorized-fi...3
https://blog.talosintelligence.com/2021/11/attackers-exploi...3
https://forest.watch.impress.co.jp/docs/news/1368676.html3

Information from Twitter

User URL Info Source Date
tanwenzhi1 https://bit.ly/3BCGLGg Source tanwenzhi1       1555160116604719105 2022/08/04

List of frequently cited URLs

URLNum of Times Referred to
cyberiqs.com46
lists.astaro.com24
Microsoft.Microsoft10
www.helpnetsecurity.com9
portal.msrc.microsoft.com9
Microsoft.Windows7
noticiasseguridad.com7
threatpost.com6
msrc.microsoft.com6
www.bleepingcomputer.com5
attackerkb.com4
github.com3
twitter.com3
www.mcafee.com3
thehackernews.com3
blog.talosintelligence.com3
forest.watch.impress.co.jp3

Information from Twitter

User URL Info Source
tanwenzhi1 bit.ly Show Tweet

GitHub Search Results: Up to 10
NameURL
No Data

GitHub Search Results: Up to 10
NameURL
No Data

2022/08/04 Score : 1
Added Har-sia Database : 2021/11/10
Last Modified : 2022/08/04
Highest Scored Date : 2021/11/24
Highest Score : 71