EXPOSURES › CVE-2021-40449
CVE-2021-40449
CRITICAL ⌖ ON CISA KEV · EXPLOITEDA Microsoft Windows vulnerability allowed authenticated users to escalate privileges, actively exploited and linked to ransomware activity.
CVE-2021-40449 represents a privilege escalation vulnerability in Windows, enabling authenticated users to gain elevated access. This poses a significant risk to DIB organizations as it can facilitate ransomware attacks and compromise system integrity; immediate patching and thorough access control reviews are essential. Failure to address this promptly can lead to non-compliance with NIST 800-171 and CMMC requirements.
Shame score — The vulnerability's exploitation in the wild, coupled with its ransomware linkage, demonstrates a serious and avoidable security lapse in a core operating system.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Unspecified vulnerability allows for an authenticated user to escalate privileges.
"Unspecified vulnerability allows for an authenticated user to escalate privileges."
| PRODUCT | STATUS |
|---|---|
| Azure Commercial Cloud Microsoft |
Authorized |
| Azure Government (includes Dynamics 365) Microsoft |
Authorized |
| Microsoft Office 365 GCC High Microsoft |
In Process |
| Office 365 Multi-Tenant & Supporting Services Microsoft |
Authorized |