CVE-2021-28348

3 documents3 sources
Severity
7.8HIGH
No vector
EPSS
0.5%
top 32.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 13
Latest updateMay 24

Description

Windows GDI+ Remote Code Execution Vulnerability Windows GDI+ Remote Code Execution Vulnerability

Affected Packages24 packages

CVEListV5microsoft/windows_76.1.0publication
CVEListV5microsoft/windows_8.16.3.0publication
CVEListV5microsoft/windows_server_20126.2.0publication
CVEListV5microsoft/windows_server_201610.0.0publication
CVEListV5microsoft/windows_server_201910.0.0publication

🔴Vulnerability Details

2
GHSA
GHSA-qjj4-qwxx-xv8f: Windows GDI+ Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-28349, CVE-2021-283502022-05-24
CVEList
Windows GDI+ Remote Code Execution Vulnerability2021-04-13

📋Vendor Advisories

1
Microsoft
Windows GDI+ Remote Code Execution Vulnerability2021-04-13
CVE-2021-28348 (HIGH CVSS 7.8) | Windows GDI+ Remote Code Execution | cvebase.io