Windows HTTP.sys Elevation of Privilege Vulnerability for Windows Server 2008 for x86-based Systems (KB5006736) (CVE-2021-40449) (CVE-2021-40469) (ESU)

Risk Information

Base Score
8.7
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
EPSS Score
Exploitation Probability
91.304%

CVE Information

Patch Details

Patch associated with this vulnerability is supported by ManageEngine.

Patch ID
32204

Patch Description
2021-10 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB5006736) (CVE-2021-40449) (CVE-2021-40469) (ESU)

References

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26442
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-36953
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-36970
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38662
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38663
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40443
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40449
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40455
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40465
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40466
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40467
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40469
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40489
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41331
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41332
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41340
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41342
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41343