MEDIUM
CVE-2021-41379
CVSS
5.5
KEV
Description
Windows Installer Elevation of Privilege Vulnerability
Summary dbcve.org
Windows Installer Elevation of Privilege vulnerability allowing an authenticated attacker to gain elevated privileges through the Windows Installer service.
Mitigation
Apply the relevant Microsoft security update for CVE-2021-41379 through Windows Update or enterprise patch management systems.
Weakness (CWE)
CWE-59
Link Following (Symlink)
EPSS Score
19.45%
Probability of exploitation in next 30 days
97.3th percentile
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41379
Patch, Vendor Advisory
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-41379
Patch, Vendor Advisory
https://www.zerodayinitiative.com/advisories/ZDI-21-1308/
Third Party Advisory, VDB Entry
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-41379
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.