HIGH
CVE-2021-42287
CVSS
7.5
KEV
Description
Active Directory Domain Services Elevation of Privilege Vulnerability
Summary dbcve.org
This is an Active Directory Domain Services (AD DS) Elevation of Privilege vulnerability with a CVSS 7.5 (HIGH) score, indicating it is network-exploitable without authentication and can allow an attacker to gain elevated privileges within an Active Directory domain.
Mitigation
Apply Microsoft security updates for CVE-2021-42287 to affected Windows Server versions running Active Directory Domain Services; also consider implementing privileged access workstation (PAW) and limiting domain admin usage as defense-in-depth.
EPSS Score
77.17%
Probability of exploitation in next 30 days
99.5th percentile
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287
Patch, Vendor Advisory
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-42287
Patch, Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-42287
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.