Microsoft Windows Media Foundation是美国微软(Microsoft)公司的一个多媒体开发库,目的是为Windows平台提供统一的多媒体影音解决方案,开发者可以透过Media Foundation播放视频和声音文件、进行影音编码或者多媒体文件转码等等工作。 Microsoft Windows Media Foundation存在代码注入漏洞。以下产品和版本受到影响:Windows 10 Version 1909 for x64-based Systems,Windows 10
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Windows 10 Version 1507 | 10.0.10240.0< 10.0.10240.19003 |
affected |
| Microsoft | Windows 10 Version 1607 | 10.0.14393.0< 10.0.14393.4530 |
affected |
| Microsoft | Windows 10 Version 1809 | 10.0.17763.0< 10.0.17763.2061 |
affected |
10.0.0< 10.0.17763.2061 |
affected | ||
| Microsoft | Windows 10 Version 1909 | 10.0.0< 10.0.18363.1679 |
affected |
| Microsoft | Windows 10 Version 2004 | 10.0.0< 10.0.19041.1110 |
affected |
| Microsoft | Windows 10 Version 20H2 | 10.0.0< 10.0.19042.1110 |
affected |
| Microsoft | Windows 10 Version 21H1 | 10.0.0< 10.0.19043.1110 |
affected |
| Microsoft | Windows 7 | 6.1.0< 6.1.7601.25661 |
affected |
| Microsoft | Windows 7 Service Pack 1 | 6.1.0< 6.1.7601.25661 |
affected |
| Microsoft | Windows 8.1 | 6.3.0< 6.3.9600.20069 |
affected |
| Microsoft | Windows Server 2008 R2 Service Pack 1 | 6.1.7601.0< 6.1.7601.25661 |
affected |
| Microsoft | Windows Server 2008 R2 Service Pack 1 (Server Core installation) | 6.1.7601.0< 6.1.7601.25661 |
affected |
| Microsoft | Windows Server 2008 Service Pack 2 | 6.0.6003.0< 6.0.6003.21167 |
affected |
| Microsoft | Windows Server 2008 Service Pack 2 (Server Core installation) | 6.0.6003.0< 6.0.6003.21167 |
affected |
| Microsoft | Windows Server 2012 | 6.2.9200.0< 6.2.9200.23409 |
affected |
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.0< 6.2.9200.23409 |
affected |
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0< 6.3.9600.20069 |
affected |
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0< 6.3.9600.20069 |
affected |
| Microsoft | Windows Server 2016 | 10.0.14393.0< 10.0.14393.4530 |
affected |
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0< 10.0.14393.4530 |
affected |
| Microsoft | Windows Server 2019 | 10.0.17763.0< 10.0.17763.2061 |
affected |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0< 10.0.17763.2061 |
affected |
| Microsoft | Windows Server version 2004 | 10.0.0< 10.0.19041.1110 |
affected |
| Microsoft | Windows Server version 20H2 | 10.0.0< 10.0.19042.1110 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-34458 | 9.9 CRITICAL | Windows Kernel Remote Code Execution Vulnerability |
| CVE-2021-34442 | 8.8 HIGH | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-34481 | 8.8 HIGH | Windows Print Spooler Remote Code Execution Vulnerability |
| CVE-2021-34450 | 8.5 HIGH | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2021-34446 | 8.0 HIGH | Windows HTML Platforms Security Feature Bypass Vulnerability |
| CVE-2021-34452 | 7.8 HIGH | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2021-34438 | 7.8 HIGH | Windows Font Driver Host Remote Code Execution Vulnerability |
| CVE-2021-34439 | 7.8 HIGH | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2021-34445 | 7.8 HIGH | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2021-34455 | 7.8 HIGH | Windows File History Service Elevation of Privilege Vulnerability |
| CVE-2021-34456 | 7.8 HIGH | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2021-34459 | 7.8 HIGH | Windows AppContainer Elevation Of Privilege Vulnerability |
| CVE-2021-34460 | 7.8 HIGH | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2021-34461 | 7.8 HIGH | Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability |
| CVE-2021-34464 | 7.8 HIGH | Microsoft Defender Remote Code Execution Vulnerability |
| CVE-2021-34467 | 7.1 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2021-34449 | 7.0 HIGH | Win32k Elevation of Privilege Vulnerability |
| CVE-2021-34462 | 7.0 HIGH | Windows AppX Deployment Extensions Elevation of Privilege Vulnerability |
| CVE-2021-34448 | 6.8 MEDIUM | Scripting Engine Memory Corruption Vulnerability |
| CVE-2021-34447 | 6.8 MEDIUM | Windows MSHTML Platform Remote Code Execution Vulnerability |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet