Important CVSS 7.8 EPSS 0.77762 ⚠️ Exploited in the wild 2021-03 archive

Executive Summary

None

Overview

7.8
CVSS HIGH
Important
MS Severity
Exploited
MS Exploit Status
Exploitation Detected
MS Exploit Likelihood
Category Elevation of Privilege
Released Mar 9 2021
Last Updated Mar 9 2021
Publicly Disclosed No
CISA KEV Listed (added 2021-11-03)
Known Exploits None Known
EPSS Score 0.77762 — 0.99528 percentile
NVD CVSS 7.8 HIGH — matches MSRC

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
ATTACK VECTOR
Local
ATTACK COMPLEXITY
Low
PRIVILEGES REQUIRED
Low
USER INTERACTION
None
SCOPE
Unchanged
CONFIDENTIALITY
High
INTEGRITY
High
AVAILABILITY
High
EXPLOIT CODE MATURITY
Functional
REMEDIATION LEVEL
Official Fix
REPORT CONFIDENCE
Confirmed
Temporal Score: 7.2

EPSS Score

0.77762
probability of exploitation in the next 30 days
0.99528 percentile - updated 2026-08-14
View on FIRST.org

Affected Products

19 affected products
Product KB Article Severity Impact Restart Required
Windows 10 Version 1803 for 32-bit Systems 4601354 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1803 for ARM64-based Systems 4601354 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1803 for x64-based Systems 4601354 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1809 for 32-bit Systems 4601345 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1809 for ARM64-based Systems 4601345 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1809 for x64-based Systems 4601345 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1909 for 32-bit Systems 4601315 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1909 for ARM64-based Systems 4601315 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 1909 for x64-based Systems 4601315 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 2004 for 32-bit Systems 4601319 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 2004 for ARM64-based Systems 4601319 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 2004 for x64-based Systems 4601319 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 20H2 for 32-bit Systems 4601319 (Security Update) Important Elevation of Privilege Yes
Windows 10 Version 20H2 for ARM64-based Systems 4601319 (Security Update) Important Elevation of Privilege Yes
Windows Server 2019 4601345 (Security Update) Important Elevation of Privilege Yes
Windows Server 2019 (Server Core installation) 4601345 (Security Update) Important Elevation of Privilege Yes
Windows Server, version 1909 (Server Core installation) 4601315 (Security Update) Important Elevation of Privilege Yes
Windows Server, version 2004 (Server Core installation) 4601319 (Security Update) Important Elevation of Privilege Yes
Windows Server, version 20H2 (Server Core Installation) 4601319 (Security Update) Important Elevation of Privilege Yes

Patches

4 patches
Article Type Restart
4601354 Security Update Yes
4601345 Security Update Yes
4601315 Security Update Yes
4601319 Security Update Yes

Exploits & PoC

13 public PoCs
RepositoryStarsPublishedDescription
KaLendsi/CVE-2021-1732-Exploit 426 2021-03-05 CVE-2021-1732 Exploit
po4sec/CVE-2021-1732 66 2021-04-23 CVE-2021-1732 poc & exp; tested on 20H2
exploitblizzard/Windows-Privilege-Escalation-CVE-2021-1732 31 2021-04-25 Read my blog for more info -
fenalik/CVE-2021-1732 15 2022-11-01 CVE-­2021­-1732 Microsoft Windows 10 本地提权漏 研究及Poc/Exploit开发
4dp/CVE-2021-1732 4 2023-03-09 CVE-­2021­-1732 Microsoft Windows 10 本地提权漏 研究及Poc/Exploit开发
linuxdy/CVE-2021-1732_exp 3 2021-04-02
oneoy/CVE-2021-1732-Exploit 1 2021-03-09
BeneficialCode/CVE-2021-1732 1 2021-09-24
asepsaepdin/CVE-2021-1732 1 2023-07-11
flyinbedxyz/CVE-2021-1732 0 2021-03-08 CVE-­2021­-1732 Microsoft Windows 10 本地提权漏 研究及Poc/Exploit开发
ExploitCN/CVE-2021-1732-EXP- 0 2022-01-23 对1909下windows版本的EXP进行分析,并对代码添加调试和注释
r1l4-i3pur1l4/CVE-2021-1732 0 2022-02-15
yangshifan-git/CVE-2021-1732 0 2023-06-29

Detection Rules

Acknowledgments

YanZiShuang( @madongze
JinQuan, MaDongZe, TuXiaoYi, and LiHao of DBAPPSecurity Co., Ltd