Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2021-43899

Опубликовано: 14 дек. 2021
Источник: msrc
CVSS3: 9.8
EPSS Низкий

Описание

Microsoft 4K Wireless Display Adapter Remote Code Execution Vulnerability

FAQ

What firmware version of the Microsoft 4K Wireless Display Adapter has the update that protects from this vulnerability?

All firmware versions of the Microsoft 4K Wireless Display Adapter that are 3.9520.47 and higher are protected from this vulnerability.

How do I ensure my Microsoft 4K Wireless Display Adapter device has the update?

You will need to install the Microsoft Wireless Display Adapter app from the Microsoft Store onto a system connected to the Microsoft 4K Wireless Display Adapter. Once installed, use the Update & security section of the app to download and install the latest firmware.

How could an attacker exploit this vulnerability?

An unauthenticated attacker on the same network as the Microsoft 4K Display Adapter could send specially crafted packets to a vulnerable device.

Обновления

ПродуктСтатьяОбновление
Microsoft 4K Wireless Display Adapter

Показывать по

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

Exploitation Less Likely

Older Software Release

Exploitation Less Likely

DOS

N/A

EPSS

Процентиль: 75%
0.0088
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

Microsoft 4K Wireless Display Adapter Remote Code Execution Vulnerability

CVSS3: 9.8
github
около 4 лет назад

Microsoft 4K Wireless Display Adapter Remote Code Execution Vulnerability

CVSS3: 9.8
fstec
около 4 лет назад

Уязвимость микропрограммного обеспечения адаптера Microsoft 4K Wireless Display Adapter, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 75%
0.0088
Низкий

9.8 Critical

CVSS3