CVE-2021-27077
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
11/03/2021
Last modified:
29/12/2023
Description
Windows Win32k Elevation of Privilege Vulnerability
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_10:2004:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:* | ||
| cpe:2.3:o:microsoft:windows_server_2008:r2:sp2:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-27077
- https://www.zerodayinitiative.com/advisories/ZDI-21-287/
- https://www.zerodayinitiative.com/advisories/ZDI-21-403/
- https://www.zerodayinitiative.com/advisories/ZDI-21-482/
- https://www.zerodayinitiative.com/advisories/ZDI-21-494/
- https://www.zerodayinitiative.com/advisories/ZDI-21-495/
- https://www.zerodayinitiative.com/advisories/ZDI-21-496/
- https://www.zerodayinitiative.com/advisories/ZDI-21-497/
- https://www.zerodayinitiative.com/advisories/ZDI-21-498/
- https://www.zerodayinitiative.com/advisories/ZDI-21-499/
- https://www.zerodayinitiative.com/advisories/ZDI-21-500/
- https://www.zerodayinitiative.com/advisories/ZDI-21-501/



