HIGH
CVE-2021-31956
CVSS
7.8
KEV
Description
Windows NTFS Elevation of Privilege Vulnerability
Summary dbcve.org
CVE-2021-31956 is a Windows NTFS Elevation of Privilege vulnerability. It is a local privilege escalation flaw in the NTFS file system component that could allow an authenticated attacker to execute code with elevated privileges. The vulnerability stems from how Windows handles certain NTFS operations.
Mitigation
Apply the Microsoft security updates for CVE-2021-31956 to all affected Windows systems. Prioritize workstations and servers based on exposure and criticality.
Weakness (CWE)
CWE-191
EPSS Score
22.27%
Probability of exploitation in next 30 days
97.6th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.