CVE-2021-31962 – Kerberos AppContainer Security Feature Bypass Vulnerability
https://notcve.org/view.php?id=CVE-2021-31962
Kerberos AppContainer Security Feature Bypass Vulnerability Una vulnerabilidad de Omisión de la Característica de Seguridad en Kerberos AppContainer Kerberos supports a security buffer to set the target SPN of a ticket bypassing the SPN check in LSASS. • http://packetstormsecurity.com/files/163206/Windows-Kerberos-AppContainer-Enterprise-Authentication-Capability-Bypass.html https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31962 •
CVE-2021-31960 – Windows Bind Filter Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31960
Windows Bind Filter Driver Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información en Windows Bind Filter Driver • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31960 •
CVE-2021-31958 – Windows NTLM Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-31958
Windows NTLM Elevation of Privilege Vulnerability Una vulnerabilidad de Escalada de Privilegios en Windows NTLM • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31958 • CWE-294: Authentication Bypass by Capture-replay •
CVE-2021-31955 – Microsoft Windows Kernel Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31955
Windows Kernel Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información en Windows Kernel Microsoft Windows Kernel contains an unspecified vulnerability that allows for information disclosure. Successful exploitation allows attackers to read the contents of kernel memory from a user-mode process. • https://github.com/freeide/CVE-2021-31955-POC https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31955 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere •
CVE-2021-31956 – Microsoft Windows NTFS Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-31956
Windows NTFS Elevation of Privilege Vulnerability Una vulnerabilidad de Escalada de Privilegios en Windows NTFS Microsoft Windows New Technology File System (NTFS) contains an unspecified vulnerability that allows attackers to escalate privileges via a specially crafted application. • https://github.com/aazhuliang/CVE-2021-31956-EXP https://github.com/Y3A/CVE-2021-31956 https://github.com/hoangprod/CVE-2021-31956-POC https://github.com/hzshang/CVE-2021-31956 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31956 • CWE-191: Integer Underflow (Wrap or Wraparound) •