Microsoft Defender Remote Code Execution VulnerabilityVendor advisory
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-1647 CVE-2021-1647
HIGHCISA KEV
Microsoft Defender Remote Code Execution Vulnerability
Record summary
CVE-2021-1647 has a selected CVSS score of 7.8 (high); EIP currently links 1 repository PoC. CISA lists CVE-2021-1647 in KEV.
Description
Microsoft Defender Remote Code Execution Vulnerability
Description source: GitHub Advisory
Exploitation context
Known exploitation
- CISA KEV
- Listed · Nov 3, 2021 · CISA
- VulnCheck KEV
- Listed · Jan 12, 2021 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Repository PoCs
- 1
CISA SSVC decision
ExploitationActive
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 24, 2024 · Source: CVE List
Affected products and versions
6| Product | Source | Version range | Status |
|---|---|---|---|
DefenderBrowse Microsoft / Defender | CISA | Version data not supplied | |
Microsoft Security EssentialsBrowse Microsoft / Microsoft Security Essentials | CVE List | Version range not supplied | affected |
Microsoft System Center 2012 Endpoint ProtectionBrowse Microsoft / Microsoft System Center 2012 Endpoint Protection | CVE List | Version range not supplied | affected |
Microsoft System Center 2012 R2 Endpoint ProtectionBrowse Microsoft / Microsoft System Center 2012 R2 Endpoint Protection | CVE List | Version range not supplied | affected |
Microsoft System Center Endpoint ProtectionBrowse Microsoft / Microsoft System Center Endpoint Protection | CVE List | Version range not supplied | affected |
Windows DefenderBrowse Microsoft / Windows Defender | CVE List | Version range not supplied | affected |
Proofs of concept
1Repository PoCs
GitHubfindcool/cve-2021-1647Repository PoCby findcoolStars: 1Not analyzed2 files
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-1647 portal.msrc.microsoft.com
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-1647 cisa.govGovernment resource
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-1647