VDB

CVE-2021-26433

CVE-2021-26433 PUBLISHED CVSS 7.800000190734863 HIGH

Windows User Profile Service Elevation of Privilege Vulnerability

EPSS 17.06% · 95.1th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
EPSS Score
17.06%
95.1th percentile

Affected Products

VendorProductVersions
MicrosoftWindows Server 2008 Service Pack 2 (Server Core installation)6.0.0
MicrosoftWindows 10 Version 160710.0.0
MicrosoftWindows 10 Version 180910.0.0
MicrosoftWindows 76.1.0
MicrosoftWindows Server 201910.0.0
MicrosoftWindows Server 201610.0.0
MicrosoftWindows Server 2016 (Server Core installation)10.0.0
MicrosoftWindows 10 Version 20H210.0.0
MicrosoftWindows 10 Version 200410.0.0
MicrosoftWindows Server version 20H210.0.0
MicrosoftWindows Server 2008 R2 Service Pack 16.1.0
MicrosoftWindows Server 2008 Service Pack 26.0.0
MicrosoftWindows Server 2008 Service Pack 26.0.0
MicrosoftWindows Server version 200410.0.0
MicrosoftWindows 10 Version 190910.0.0
MicrosoftWindows 10 Version 21H110.0.0
MicrosoftWindows Server 2012 R2 (Server Core installation)6.3.0
MicrosoftWindows Server 2008 R2 Service Pack 1 (Server Core installation)6.0.0
MicrosoftWindows Server 2012 (Server Core installation)6.2.0
MicrosoftWindows Server 2012 R26.3.0

…and 5 more

Timeline

  • Aug 11, 2021 CVE Published
  • Aug 13, 2021 EPSS Score
  • Oct 11, 2021 EPSS Score
  • Dec 8, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 4, 2022 EPSS Score
  • Jul 31, 2022 EPSS Score
  • Nov 25, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 23, 2023 EPSS Score
  • Jun 14, 2023 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›