MSRC compact vulnerability detail

CVE-2021-33739 · Microsoft DWM Core Library Elevation of Privilege Vulnerability

No description was published by MSRC.

Severity
Important
Impact
Elevation of Privilege
CVSS
8.4 base · 7.8 temporal
Release
2021-06-08
Signals
Windows DWM Core Library Elevation of Privilege Exploited: Yes Publicly disclosed: Yes Exploitability: Exploitation Detected
CWE
No CWE data published.
Patch Diff
Loading module diff metadata...
Resolved binary override
Use this when the MSRC module name cannot be mapped automatically or the resolved binary looks wrong.
Old version New version
Description
No description was published by MSRC.
FAQ / Articles
How could an attacker exploit this vulnerability?
How could an attacker exploit this vulnerability? This vulnerability is subject to a local escalation of privilege attack. The attacker would most likely arrange to run an executable or script on the local computer. An attacker could gain access to the computer through a variety of methods, such as via a phishing attack where a user clicks an executable file that is attached to an email.