CVE-2021-43217

HIGH

Windows EFS - Remote Code Execution

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2021-43217. PoCs published by JolynNgSC.

AI-analyzed exploit summary This repository is a writeup documenting an EFS bypass vulnerability (CVE-2021-43217) on Windows 10, demonstrating the use of Kali Linux and Metasploit for exploitation. It includes steps for simulation but lacks actual exploit code.

Description

Windows Encrypting File System (EFS) Remote Code Execution Vulnerability

Exploits (1)

nomisec WRITEUP
by JolynNgSC · poc
https://github.com/JolynNgSC/EFS_CVE-2021-43217

This repository is a writeup documenting an EFS bypass vulnerability (CVE-2021-43217) on Windows 10, demonstrating the use of Kali Linux and Metasploit for exploitation. It includes steps for simulation but lacks actual exploit code.

Classification
Writeup 90%
Attack Type
Other
Complexity
Moderate
Reliability
Theoretical
Target: Windows 10 EFS
No auth needed
Prerequisites: Access to a Windows 10 system with EFS enabled · Kali Linux environment
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References

Scores

CVSS v3 8.1
EPSS 0.0642
EPSS Percentile 92.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

Status published
Products (20)
microsoft/windows_10
microsoft/windows_10 20h2
microsoft/windows_10 21h1
microsoft/windows_10 1607
microsoft/windows_10 1809
microsoft/windows_10 1909
microsoft/windows_10 2004
microsoft/windows_11
microsoft/windows_7
microsoft/windows_8.1
... and 10 more
Published Dec 15, 2021
Tracked Since Feb 18, 2026