CVE-2021-28455

4 documents4 sources
Severity
8.8HIGH
EPSS
10.6%
top 6.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 11
Latest updateMay 24

Description

Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages35 packages

CVEListV5microsoft/microsoft_access_2016_(32-bit_edition)16.0.0publication
CVEListV5microsoft/microsoft_access_2016_(64-bit_edition)16.0.0publication
CVEListV5microsoft/windows_76.1.06.1.7601.24597+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2m6v-mggf-5f9g: Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability2022-05-24
CVEList
Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability2021-05-11

📋Vendor Advisories

1
Microsoft
Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability2021-05-11
CVE-2021-28455 (HIGH CVSS 8.8) | Microsoft Jet Red Database Engine a | cvebase.io