CVE-2021-27066
published 2021-03-11CVE-2021-27066: Windows Admin Center Security Feature Bypass Vulnerability
PriorityP424medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
EPSS
2.83%
85.0th percentile
Windows Admin Center Security Feature Bypass Vulnerability
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_admin_center | >= 1809.0 < publication | publication |
| msrc | windows_admin_center | — | — |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
vendor_msrc4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x3x8-r6pj-f993: Windows Admin Center Security Feature Bypass Vulnerability
ghsa_unreviewed·2022-05-24
CVE-2021-27066 [MEDIUM] GHSA-x3x8-r6pj-f993: Windows Admin Center Security Feature Bypass Vulnerability
Windows Admin Center Security Feature Bypass Vulnerability
Microsoft
Windows Admin Center Security Feature Bypass Vulnerability
vendor_msrc·2021-03-09·CVSS 4.3
CVE-2021-27066 [MEDIUM] Windows Admin Center Security Feature Bypass Vulnerability
Windows Admin Center Security Feature Bypass Vulnerability
Windows Admin Center: Windows Admin Center
Microsoft: Microsoft
Impact: Security Feature Bypass
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Remediation: Release Notes
Reference: https://techcommunity.microsoft.com/t5/windows-admin-center-blog/windows-admin-center-version-2103-is-now-generally-available/ba-p/2176438
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-03-11
Published