CISA已知被利用漏洞
Microsoft HTTP Protocol Stack contains a vulnerability in http.sys that allows for remote code execution.
所需操作:
Apply updates per vendor instructions.
截止日期:
2022-04-27
描述
HTTP Protocol Stack Remote Code Execution Vulnerability
AI分析AI驱动
受影响产品
microsoftwindows_10_2004
microsoftwindows_10_20h2
microsoftwindows_server_2004
microsoftwindows_server_20h2
参考资料
- http://packetstormsecurity.com/files/162722/Microsoft-HTTP-Protocol-Stack-Remote-Code-Execution.htmlThird Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31166PatchVendor Advisory
- http://packetstormsecurity.com/files/162722/Microsoft-HTTP-Protocol-Stack-Remote-Code-Execution.htmlThird Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31166PatchVendor Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-31166US Government Resource