PT-2021-2681 · Microsoft · Windows Gdi+1

Willj

+1

·

Published

2021-04-13

·

Updated

2023-12-29

·

CVE-2021-28318

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Windows GDI+ (affected versions not specified)
Description: The issue exists due to insufficient input validation in the Windows Graphics Device Interface Plus (GDI+) component of Windows operating systems. This can allow an attacker to gain unauthorized access to protected information. The vulnerability enables attackers to obtain sensitive information and potentially affect the system.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-02211
CVE-2021-28318

Affected Products

Windows
Windows Gdi