CVE-2021-31166
9.8CRITICALHTTP Protocol Stack Remote Code Execution Vulnerability
Опубликовано: 5/11/2021Обновлено: 10/30/2025
Известная эксплуатируемая уязвимость CISA
Microsoft HTTP Protocol Stack contains a vulnerability in http.sys that allows for remote code execution.
Требуемое действие:
Apply updates per vendor instructions.
Срок:
2022-04-27
Описание
HTTP Protocol Stack Remote Code Execution Vulnerability
ИИ-АнализНа базе ИИ
Затронутые продукты
microsoftwindows_10_2004
microsoftwindows_10_20h2
microsoftwindows_server_2004
microsoftwindows_server_20h2
Ссылки
- http://packetstormsecurity.com/files/162722/Microsoft-HTTP-Protocol-Stack-Remote-Code-Execution.htmlThird Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31166PatchVendor Advisory
- http://packetstormsecurity.com/files/162722/Microsoft-HTTP-Protocol-Stack-Remote-Code-Execution.htmlThird Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31166PatchVendor Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-31166US Government Resource