CVE-2021-1688

Description

Windows CSC Service Elevation of Privilege Vulnerability

Risk Information

Base Score
7.7
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
0.206

Associated Vulnerability

VulnerabilityOS Platform
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4598285)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB4598285)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB4598285)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4598243)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2016 for x64-based Systems (KB4598243)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4598243)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB4598231)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB4598231)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 2004 for x64-based Systems (KB4598242)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 2004 for x86-based Systems (KB4598242)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server, version 2004 for x64-based Systems (KB4598242)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server, version 20H2 for x64-based Systems (KB4598242)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 20H2 for x86-based Systems (KB4598242)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1803 for x64-based Systems (KB4598245)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1803 for x86-based Systems (KB4598245)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB4598230)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB4598230)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2019 for x64-based Systems (KB4598230)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2008 for x64-based Systems (KB4598287) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2008 for x86-based Systems (KB4598287) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2008 for x86-based Systems (KB4598288) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2008 for x64-based Systems (KB4598288) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1909 for x64-based Systems (KB4598229)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server, version 1909 for x64-based Systems (KB4598229)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 10 Version 1909 for x86-based Systems (KB4598229)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB4598297)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB4598278)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4598289) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB4598289) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB4598289) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB4598279) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4598279) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB4598279) (ESU)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4598275)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB4598275)Windows
Windows CSC Service Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB4598275)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-305932021-01 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB4598285)
PATCH-305942021-01 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB4598285)
PATCH-305952021-01 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB4598285)
PATCH-305902021-01 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB4598243)
PATCH-305912021-01 Cumulative Update for Windows Server 2016 for x64-based Systems (KB4598243)
PATCH-305922021-01 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4598243)
PATCH-305882021-01 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB4598231)
PATCH-305892021-01 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB4598231)
PATCH-305832021-01 Cumulative Update for Windows 10 Version 2004 for x64-based Systems (KB4598242)
PATCH-305842021-01 Cumulative Update for Windows 10 Version 2004 for x86-based Systems (KB4598242)
PATCH-305852021-01 Cumulative Update for Windows Server, version 2004 for x64-based Systems (KB4598242)
PATCH-305862021-01 Cumulative Update for Windows 10 Version 20H2 for x64-based Systems (KB4598242)
PATCH-305872021-01 Cumulative Update for Windows 10 Version 20H2 for x86-based Systems (KB4598242)
PATCH-305752021-01 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4598245)
PATCH-305762021-01 Cumulative Update for Windows 10 Version 1803 for x86-based Systems (KB4598245)
PATCH-305772021-01 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB4598230)
PATCH-305782021-01 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB4598230)
PATCH-305792021-01 Cumulative Update for Windows Server 2019 for x64-based Systems (KB4598230)
PATCH-306222021-01 Security Only Quality Update for Windows Server 2008 for x64-based Systems (KB4598287) (ESU)
PATCH-306232021-01 Security Only Quality Update for Windows Server 2008 for x86-based Systems (KB4598287) (ESU)
PATCH-306272021-01 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB4598288) (ESU)
PATCH-306282021-01 Security Monthly Quality Rollup for Windows Server 2008 for x64-based Systems (KB4598288) (ESU)
PATCH-305802021-01 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4598229)
PATCH-305812021-01 Cumulative Update for Windows Server, version 1909 for x64-based Systems (KB4598229)
PATCH-305822021-01 Cumulative Update for Windows 10 Version 1909 for x86-based Systems (KB4598229)
PATCH-305742021-01 Security Only Quality Update for Windows Server 2012 for x64-based Systems (KB4598297)
PATCH-305962021-01 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB4598278)
PATCH-306192021-01 Security Only Quality Update for Windows Server 2008 R2 for x64-based Systems (KB4598289) (ESU)
PATCH-306202021-01 Security Only Quality Update for Windows 7 for x86-based Systems (KB4598289) (ESU)
PATCH-306212021-01 Security Only Quality Update for Windows 7 for x64-based Systems (KB4598289) (ESU)
PATCH-306242021-01 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB4598279) (ESU)
PATCH-306252021-01 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB4598279) (ESU)
PATCH-306262021-01 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB4598279) (ESU)
PATCH-305712021-01 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems (KB4598275)
PATCH-305722021-01 Security Only Quality Update for Windows 8.1 for x64-based Systems (KB4598275)
PATCH-305732021-01 Security Only Quality Update for Windows 8.1 for x86-based Systems (KB4598275)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234