PT-2021-2375 · Microsoft · Windows Activex Installer Service+1

Edwardzpeng

+3

·

Published

2021-03-09

·

Updated

2023-12-29

·

CVE-2021-26869

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows ActiveX Installer Service (affected versions not specified)
Description The issue is related to insecure privilege management in the Windows ActiveX Installer Service component. It allows an attacker to elevate their privileges. The vulnerability can be exploited to obtain sensitive information and affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BDU:2021-01615
CVE-2021-26869

Affected Products

Windows
Windows Activex Installer Service