説明
Multiple vulnerabilities were found in Microsoft Products (Extended Support Update). Malicious users can exploit these vulnerabilities to execute arbitrary code, gain privileges, obtain sensitive information, spoof user interface.
Below is a complete list of vulnerabilities:
- A remote code execution vulnerability in Hyper-V can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Windows Graphics Component can be exploited remotely to gain privileges.
- An information disclosure vulnerability in Windows Remote Desktop Protocol (RDP) can be exploited remotely to obtain sensitive information.
- A spoofing vulnerability in Windows Wireless Networking can be exploited remotely to spoof user interface.
- An information disclosure vulnerability in Microsoft Windows Infrared Data Association (IrDA) can be exploited remotely to obtain sensitive information.
- A spoofing vulnerability in Microsoft Bluetooth Driver can be exploited remotely to spoof user interface.
- An elevation of privilege vulnerability in Windows SSDP Service can be exploited remotely to gain privileges.
- A remote code execution vulnerability in Microsoft Jet Red Database Engine and Access Connectivity Engine can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in OLE Automation can be exploited remotely to execute arbitrary code.
- An information disclosure vulnerability in Windows Wireless Networking can be exploited remotely to obtain sensitive information.
- A memory corruption vulnerability in Scripting Engine can be exploited remotely to execute arbitrary code.
オリジナルアドバイザリー
- CVE-2021-31188
- CVE-2021-31186
- CVE-2020-24588
- CVE-2021-31184
- CVE-2021-31182
- CVE-2020-26144
- CVE-2021-31193
- CVE-2021-28455
- CVE-2021-31194
- CVE-2020-24587
- CVE-2021-26419
エクスプロイテーション
Public exploits exist for this vulnerability.
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
関連製品
- Microsoft-Internet-Explorer
- Microsoft-Office
- Microsoft-Windows
- Microsoft-Windows-Server
- Microsoft-Windows-Server-2012
- Microsoft-Windows-8
- Microsoft-Windows-7
- Microsoft-Windows-Server-2008
- Windows-RT
- Microsoft-Windows-10
CVEリスト
- CVE-2021-28476 critical
- CVE-2021-31188 critical
- CVE-2021-31186 high
- CVE-2020-24588 warning
- CVE-2021-31184 high
- CVE-2021-31182 high
- CVE-2020-26144 high
- CVE-2021-31193 critical
- CVE-2021-28455 critical
- CVE-2021-31194 critical
- CVE-2020-24587 warning
- CVE-2021-26419 critical
KBリスト
も参照してください
お住まいの地域に広がる脆弱性の統計をご覧ください statistics.securelist.com
この脆弱性についての記述に不正確な点がありますか? お知らせください!