HIGH

CVE-2021-31956

Microsoft Windows 10 1507 2021-06-08 CVSS v3.1
CVSS
7.8
KEV

Description

Windows NTFS Elevation of Privilege Vulnerability

Summary dbcve.org

CVE-2021-31956 is a Windows NTFS Elevation of Privilege vulnerability. It is a local privilege escalation flaw in the NTFS file system component that could allow an authenticated attacker to execute code with elevated privileges. The vulnerability stems from how Windows handles certain NTFS operations.

Mitigation

Apply the Microsoft security updates for CVE-2021-31956 to all affected Windows systems. Prioritize workstations and servers based on exposure and criticality.

Patch Commit

Weakness (CWE)

CWE-191

EPSS Score

22.27%
Probability of exploitation in next 30 days
97.6th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE