7.2
CVSSv2

CVE-2021-1647

Published: 12/01/2021 Updated: 29/12/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 642
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Defender Remote Code Execution Vulnerability

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows_defender -

microsoft security essentials -

microsoft system center endpoint protection -

microsoft system center endpoint protection 2012

Recent Articles

North Korea infected infosec bods with backdoors via dodgy blog pages, Visual Studio files – Google
The Register • Iain Thomson in San Francisco • 26 Jan 2021

Security eggheads discover their PCs chatting with Kim Jong Un's hackers Stuck inside with time on your hands? The US govt would like to remind you it's paying $5m for Nork hacking scalps

North Korea's hackers homed in on specific infosec researchers and infected their systems with a backdoor after luring them to a suspicious website, Google revealed on Monday. The internet giant's Threat Analysis Group said Pyongyang's snoops would send private messages to their targets – primarily folks investigating software security vulnerabilities – via Twitter, LinkedIn, Telegram, Discord, Keybase or plain ol' email, and try to lure the marks to a blog promising details of exploitable b...

Microsoft emits 83 security fixes – and miscreants are already exploiting one of the vulns in Windows Defender
The Register • Thomas Claburn in San Francisco • 12 Jan 2021

Redmond keeps us hanging with on-premises Exchange flaw still to be fixed Patch Tuesday brings bug fixes for OpenSSL, IBM, SAP, Kubernetes, Adobe, and Red Hat. And Microsoft, of course

Patch Tuesday Microsoft on Tuesday released updates addressing 83 vulnerabilities in its software, which doesn't include the 13 flaws fixed in its Edge browser last week. That's up from 58 repairs made in December, 2020, a relatively light month by recent standards. Affected applications include: Microsoft Windows, Microsoft Edge (EdgeHTML-based), Microsoft Office and Microsoft Office Services and Web Apps, Microsoft Windows Codecs Library, Visual Studio, SQL Server, Microsoft Malware Protection...