CVE-2021-31971

Description

Windows HTML Platforms Security Feature Bypass Vulnerability

Risk Information

Base Score
6.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
2.76

Associated Vulnerability

VulnerabilityOS Platform
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1909 for x64-based Systems (KB5003635)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1909 for x86-based Systems (KB5003635)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server, version 2004 for x64-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 2004 for x86-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 2004 for x64-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 20H2 for x64-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 20H2 for x86-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 21H1 for x86-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 21H1 for x64-based Systems (KB5003637)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2016 for x64-based Systems (KB5003638)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB5003638)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB5003638)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2019 for x64-based Systems (KB5003646)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB5003646)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB5003646)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2008 for x86-based Systems (KB5003661) (ESU)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2008 for x64-based Systems (KB5003661) (ESU)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB5003667) (ESU)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB5003667) (ESU)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB5003667) (ESU)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB5003671)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB5003671)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB5003671)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB5003687)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB5003687)Windows
Windows Print Spooler Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB5003697)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows Server 2008 R2 for x64-based systems (KB5003636) (ESU)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows 7 for x64-based systems (KB5003636) (ESU)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows 7 for x86-based systems (KB5003636) (ESU)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 9 for Windows Server 2008 for x86-based systems (KB5003636) (ESU)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 9 for Windows Server 2008 for x64-based systems (KB5003636) (ESU)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows Server 2012 for x64-based systems (KB5003636)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows 8.1 for x86-based systems (KB5003636)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows Server 2012 R2 for x64-based systems (KB5003636)Windows
Scripting Engine Memory Corruption Vulnerability for Internet Explorer 11 for Windows 8.1 for x64-based systems (KB5003636)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-315252021-06 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB5003635)
PATCH-315262021-06 Cumulative Update for Windows 10 Version 1909 for x86-based Systems (KB5003635)
PATCH-315272021-06 Cumulative Update for Windows Server, version 2004 for x64-based Systems (KB5003637)
PATCH-315282021-06 Cumulative Update for Windows 10 Version 2004 for x86-based Systems (KB5003637)
PATCH-315292021-06 Cumulative Update for Windows 10 Version 2004 for x64-based Systems (KB5003637)
PATCH-315302021-06 Cumulative Update for Windows 10 Version 20H2 for x64-based Systems (KB5003637)
PATCH-315312021-06 Cumulative Update for Windows 10 Version 20H2 for x86-based Systems (KB5003637)
PATCH-315322021-06 Cumulative Update for Windows 10 Version 21H1 for x86-based Systems (KB5003637)
PATCH-315332021-06 Cumulative Update for Windows 10 Version 21H1 for x64-based Systems (KB5003637)
PATCH-315342021-06 Cumulative Update for Windows Server 2016 for x64-based Systems (KB5003638)
PATCH-315352021-06 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB5003638)
PATCH-315362021-06 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB5003638)
PATCH-315372021-06 Cumulative Update for Windows Server 2019 for x64-based Systems (KB5003646)
PATCH-315382021-06 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB5003646)
PATCH-315392021-06 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB5003646)
PATCH-315492021-06 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB5003661) (ESU)
PATCH-315502021-06 Security Monthly Quality Rollup for Windows Server 2008 for x64-based Systems (KB5003661) (ESU)
PATCH-315462021-06 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB5003667) (ESU)
PATCH-315472021-06 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB5003667) (ESU)
PATCH-315482021-06 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB5003667) (ESU)
PATCH-315432021-06 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB5003671)
PATCH-315442021-06 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB5003671)
PATCH-315452021-06 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB5003671)
PATCH-315402021-06 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB5003687)
PATCH-315412021-06 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB5003687)
PATCH-315422021-06 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB5003697)
PATCH-315162021-06 Cumulative Security Update for Internet Explorer 11 for Windows Server 2008 R2 for x64-based systems (KB5003636) (ESU)
PATCH-315172021-06 Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based systems (KB5003636) (ESU)
PATCH-315182021-06 Cumulative Security Update for Internet Explorer 11 for Windows 7 for x86-based systems (KB5003636) (ESU)
PATCH-315192021-06 Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 for x86-based systems (KB5003636) (ESU)
PATCH-315202021-06 Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 for x64-based systems (KB5003636) (ESU)
PATCH-315212021-06 Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 for x64-based systems (KB5003636)
PATCH-315222021-06 Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x86-based systems (KB5003636)
PATCH-315232021-06 Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 R2 for x64-based systems (KB5003636)
PATCH-315242021-06 Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x64-based systems (KB5003636)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234