Aug 2021: Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2021-34484 Published on August 12, 2021
Windows User Profile Service Elevation of Privilege Vulnerability
Windows User Profile Service Elevation of Privilege Vulnerability
Known Exploited Vulnerability
This Microsoft Windows User Profile Service Privilege Escalation Vulnerability is part of CISA's list of Known Exploited Vulnerabilities. Microsoft Windows User Profile Service contains an unspecified vulnerability which allows for privilege escalation.
The following remediation steps are recommended / required by April 21, 2022: Apply updates per vendor instructions.
Products Associated with CVE-2021-34484
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-34484 are published in these products:
Affected Versions
Microsoft Windows 10 Version 1809:- Version 10.0.0 and below 10.0.17763.2114 is affected.
- Version 10.0.0 and below 10.0.17763.2114 is affected.
- Version 10.0.0 and below 10.0.17763.2114 is affected.
- Version 10.0.0 and below 10.0.18363.1734 is affected.
- Version 10.0.0 and below 10.0.19043.1165 is affected.
- Version 10.0.0 and below 10.0.19041.1165 is affected.
- Version 10.0.0 and below 10.0.19041.1165 is affected.
- Version 10.0.0 and below 10.0.19042.1165 is affected.
- Version 10.0.0 and below 10.0.19042.1165 is affected.
- Version 10.0.0 and below 10.0.10240.19022 is affected.
- Version 10.0.0 and below 10.0.14393.4583 is affected.
- Version 10.0.0 and below 10.0.14393.4583 is affected.
- Version 10.0.0 and below 10.0.14393.4583 is affected.
- Version 6.1.0 and below 6.1.7601.25685 is affected.
- Version 6.1.0 and below 6.1.7601.25685 is affected.
- Version 6.3.0 and below 6.3.9600.20094 is affected.
- Version 6.0.0 and below 6.0.6003.21192 is affected.
- Version 6.0.0 and below 6.0.6003.21192 is affected.
- Version 6.0.0 and below 6.0.6003.21192 is affected.
- Version 6.1.0 and below 6.1.7601.25685 is affected.
- Version 6.0.0 and below 6.1.7601.25685 is affected.
- Version 6.2.0 and below 6.2.9200.23435 is affected.
- Version 6.2.0 and below 6.2.9200.23435 is affected.
- Version 6.3.0 and below 6.3.9600.20094 is affected.
- Version 6.3.0 and below 6.3.9600.20094 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.