CVE-2021-2690011.03.2021, 16:15Windows Win32k Elevation of Privilege VulnerabilityEnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTPrimary7.8 HIGHLOCALLOWLOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HAwaiting analysisThis vulnerability is currently awaiting analysis.Base ScoreCVSS 3.xEPSS ScorePercentile: UnknownWindows ReleasesPlatformVersionWindows 101909 (arm64, x64, x86)KB50008082004 (arm64, x64, x86)KB500080220H2 (arm64, x64, x86)KB5000802Windows Server1909 Server CoreKB50008082004 Server CoreKB500080220H2 Server CoreKB5000802Common Weakness EnumerationCWE-416 - Use After FreeReferencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.Referenceshttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26900https://www.zerodayinitiative.com/advisories/ZDI-21-331/https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26900https://www.zerodayinitiative.com/advisories/ZDI-21-331/