CVE-2021-1732KEV · OVERDUECWE-787

Microsoft Win32k Privilege Escalation Vulnerability

High · published February 26, 2021

Patch now

Confirmed exploited, and the score agrees

CVSS calls it high at 7.8. It is confirmed in active exploitation. It sits in the 99.6th percentile for exploit probability.

1754
days past CISA
deadline
CVSS v3.1
7.8
EPSS
78%
Percentile
99.6
In the wild
Confirmed
What it is

🚨 An elevation of privilege vulnerability in Windows could let attackers gain control with just a sneaky command! This one's no joke! ⚡ This flaw is like a hotel staff member using a fake ID to access the VIP lounge — they shouldn't be there, but with the right tricks, they can waltz right in and take control! If exploited, this vulnerability could allow malicious actors to run arbitrary code with elevated privileges, potentially leading to full system compromise. Imagine someone sneaking into the master control room of a spaceship and taking the helm — absolutely devastating!

Put simply

This flaw is like a hotel staff member using a fake ID to access the VIP lounge — they shouldn't be there, but with the right tricks, they can waltz right in and take control! The Win32k elevation of privilege vulnerability allows attackers to execute code in kernel mode, bypassing normal security checks. This means a crafty command could result in full control over the system without the user ever noticing!

What to do

If exploited, this vulnerability could allow malicious actors to run arbitrary code with elevated privileges, potentially leading to full system compromise. Imagine someone sneaking into the master control room of a spaceship and taking the helm — absolutely devastating! To protect yourself, make sure to apply the latest Windows updates immediately, as they include a patch for this vulnerability. Additionally, consider implementing strict user permissions and regular security audits to minimize exposure. You've got this! Stay vigilant and keep your systems patched — your security hero status is activated! 🛡️

The record
Technical detail
CVSS v3.1
7.8 · HIGH
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.78376 · 99.6th percentile
Weakness
CWE-787 · Out-of-bounds Write
Published
2021-02-26T04:15Z
KEV added
2021-11-03 · due 2021-11-17
Affected products (9)
ProductVersionsFixed in
microsoft/windows_10_1803all versions
microsoft/windows_10_1809all versions
microsoft/windows_10_1909all versions
microsoft/windows_10_2004all versions
microsoft/windows_10_20h2all versions
microsoft/windows_server_1909all versions
microsoft/windows_server_2004all versions
microsoft/windows_server_2019all versions
microsoft/windows_server_20h2all versions
References (7)
EPSS history
Timeline
  • 03 NOV 00:00Z
    Added to CISA KEV — remediate by Nov 17
    kev
  • 25 FEB 23:01Z
    Windows Win32k Elevation of Privilege Vulnerability
    cvelistv5