CVE-2021-36961 – Windows Installer Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2021-36961
Windows Installer Denial of Service Vulnerability Una Vulnerabilidad de Denegación de Servicio de Windows Installer This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Windows Installer Service. By creating a directory junction, an attacker can abuse the service to create a directory. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-36961 https://www.zerodayinitiative.com/advisories/ZDI-21-1078 •
CVE-2021-36960 – Windows SMB Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-36960
Windows SMB Information Disclosure Vulnerability Una Vulnerabilidad de Divulgación de Información de Windows SMB. Este CVE ID es diferente de CVE-2021-36972 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-36960 •
CVE-2021-36959 – Windows Authenticode Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-36959
Windows Authenticode Spoofing Vulnerability Una Vulnerabilidad de Suplantación de Identidad en Windows Authenticode • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-36959 •
CVE-2021-36955 – Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-36955
Windows Common Log File System Driver Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios de Windows Common Log File System Driver. Este CVE ID es diferente de CVE-2021-36963, CVE-2021-38633 Microsoft Windows Common Log File System (CLFS) driver contains an unspecified vulnerability that allows for privilege escalation. • https://github.com/JiaJinRong12138/CVE-2021-36955-EXP https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-36955 •
CVE-2021-26435 – Windows Scripting Engine Memory Corruption Vulnerability
https://notcve.org/view.php?id=CVE-2021-26435
Windows Scripting Engine Memory Corruption Vulnerability Una Vulnerabilidad de Corrupción de Memoria de Windows Scripting Engine • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26435 • CWE-787: Out-of-bounds Write •