Record summary

CVE-2021-36955 has a selected CVSS score of 7.8 (high); EIP currently links 1 repository PoC. CISA lists CVE-2021-36955 in KEV and reports its use in known ransomware campaigns.

Description

Windows Common Log File System Driver Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-36963, CVE-2021-38633.

Description source: GitHub Advisory

Exploitation context

Known exploitation

CISA KEV
Listed · Nov 3, 2021 · CISA
VulnCheck KEV
Listed · Nov 3, 2021 · VulnCheck
Reported exploitation
Observed · VulnCheck
Ransomware use
Observed · CISA

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationActive
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 4, 2025 · Source: CVE List

Affected products and versions

Showing 12 of 26
ProductSourceVersion rangeStatus
CISAVersion data not supplied
CVE List10.0.10240.0 to < 10.0.10240.19060affected
CVE List10.0.14393.0 to < 10.0.14393.4651affected
CVE List10.0.17763.0 to < 10.0.17763.2183affected
10.0.0 to < 10.0.17763.2183affected
CVE List10.0.0 to < 10.0.18363.1801affected
CVE List10.0.0 to < 10.0.19041.1237affected
CVE List10.0.0 to < 10.0.19042.1237affected
CVE List10.0.0 to < 10.0.19043.1237affected
CVE List6.1.0 to < 6.1.7601.25712affected
CVE List6.1.0 to < 6.1.7601.25712affected
CVE List6.3.0 to < 6.3.9600.20120affected
CVE List6.1.7601.0 to < 6.1.7601.25712affected

Proofs of concept

1

Repository PoCs

GitHubJiaJinRong12138/CVE-2021-36955-EXPRepository PoCby JiaJinRong12138Stars: 14Not analyzed3 files

29.4 KiB

GitHub

PoC details

References

4