CVE-2021-24102

Description

Windows Event Tracing Elevation of Privilege Vulnerability

Risk Information

Base Score
7.7
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
0.355

Associated Vulnerability

VulnerabilityOS Platform
Hyper-V Denial of Service Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB4601345)Windows
Hyper-V Denial of Service Vulnerability for Windows Server 2019 for x64-based Systems (KB4601345)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB4601345)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB4601331)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB4601331)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 1803 for x64-based Systems (KB4601354)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 1803 for x86-based Systems (KB4601354)Windows
Windows Graphics Component Remote Code Execution Vulnerability for Windows Server 2016 for x64-based Systems (KB4601318)Windows
Windows Graphics Component Remote Code Execution Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4601318)Windows
Windows Graphics Component Remote Code Execution Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4601318)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4601384)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 8.1 for x86-based Systems (KB4601384)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 8.1 for x64-based Systems (KB4601384)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2008 for x64-based Systems (KB4601360) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2008 for x86-based Systems (KB4601360) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2008 for x86-based Systems (KB4601366) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2008 for x64-based Systems (KB4601366) (ESU)Windows
Hyper-V Denial of Service Vulnerability for Windows Server, version 20H2 for x64-based Systems (KB4601319)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 20H2 for x86-based Systems (KB4601319)Windows
Hyper-V Denial of Service Vulnerability for Windows Server, version 2004 for x64-based Systems (KB4601319)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 2004 for x64-based Systems (KB4601319)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 2004 for x86-based Systems (KB4601319)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 1909 for x64-based Systems (KB4601315)Windows
Hyper-V Denial of Service Vulnerability for Windows 10 Version 1909 for x86-based Systems (KB4601315)Windows
Hyper-V Denial of Service Vulnerability for Windows Server, version 1909 for x64-based Systems (KB4601315)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 7 for x86-based Systems (KB4601347) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4601347) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 7 for x64-based Systems (KB4601347) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4601363) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 7 for x86-based Systems (KB4601363) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 7 for x64-based Systems (KB4601363) (ESU)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2012 for x64-based Systems (KB4601357)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2012 for x64-based Systems (KB4601348)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 8.1 for x86-based Systems (KB4601349)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows 8.1 for x64-based Systems (KB4601349)Windows
Windows Remote Procedure Call Information Disclosure Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4601349)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-307752021-02 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB4601345) (CVE-2021-1732)
PATCH-307762021-02 Cumulative Update for Windows Server 2019 for x64-based Systems (KB4601345) (CVE-2021-1732)
PATCH-307772021-02 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB4601345) (CVE-2021-1732)
PATCH-307682021-02 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB4601331)
PATCH-307692021-02 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB4601331)
PATCH-307732021-02 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4601354) (CVE-2021-1732)
PATCH-307742021-02 Cumulative Update for Windows 10 Version 1803 for x86-based Systems (KB4601354) (CVE-2021-1732)
PATCH-307702021-02 Cumulative Update for Windows Server 2016 for x64-based Systems (KB4601318)
PATCH-307712021-02 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4601318)
PATCH-307722021-02 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB4601318)
PATCH-307642021-02 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB4601384)
PATCH-307652021-02 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB4601384)
PATCH-307662021-02 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB4601384)
PATCH-308422021-02 Security Monthly Quality Rollup for Windows Server 2008 for x64-based Systems (KB4601360) (ESU)
PATCH-308432021-02 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB4601360) (ESU)
PATCH-308472021-02 Security Only Quality Update for Windows Server 2008 for x86-based Systems (KB4601366) (ESU)
PATCH-308482021-02 Security Only Quality Update for Windows Server 2008 for x64-based Systems (KB4601366) (ESU)
PATCH-307832021-02 Cumulative Update for Windows 10 Version 20H2 for x64-based Systems (KB4601319) (CVE-2021-1732)
PATCH-307842021-02 Cumulative Update for Windows 10 Version 20H2 for x86-based Systems (KB4601319) (CVE-2021-1732)
PATCH-307852021-02 Cumulative Update for Windows Server, version 2004 for x64-based Systems (KB4601319) (CVE-2021-1732)
PATCH-307862021-02 Cumulative Update for Windows 10 Version 2004 for x64-based Systems (KB4601319) (CVE-2021-1732)
PATCH-307872021-02 Cumulative Update for Windows 10 Version 2004 for x86-based Systems (KB4601319) (CVE-2021-1732)
PATCH-307782021-02 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4601315) (CVE-2021-1732)
PATCH-307792021-02 Cumulative Update for Windows 10 Version 1909 for x86-based Systems (KB4601315) (CVE-2021-1732)
PATCH-307802021-02 Cumulative Update for Windows Server, version 1909 for x64-based Systems (KB4601315) (CVE-2021-1732)
PATCH-308392021-02 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB4601347) (ESU)
PATCH-308402021-02 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB4601347) (ESU)
PATCH-308412021-02 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB4601347) (ESU)
PATCH-308442021-02 Security Only Quality Update for Windows Server 2008 R2 for x64-based Systems (KB4601363) (ESU)
PATCH-308452021-02 Security Only Quality Update for Windows 7 for x86-based Systems (KB4601363) (ESU)
PATCH-308462021-02 Security Only Quality Update for Windows 7 for x64-based Systems (KB4601363) (ESU)
PATCH-307632021-02 Security Only Quality Update for Windows Server 2012 for x64-based Systems (KB4601357)
PATCH-307672021-02 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB4601348)
PATCH-307602021-02 Security Only Quality Update for Windows 8.1 for x86-based Systems (KB4601349)
PATCH-307612021-02 Security Only Quality Update for Windows 8.1 for x64-based Systems (KB4601349)
PATCH-307622021-02 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems (KB4601349)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234