CVE-2021-28479: Windows CSC Service Information Disclosure Vulnerability
Published May 11, 2021
·Updated
Windows CSC Service Information Disclosure Vulnerability
Affected Software
16 affected components
Microsoft Windows 10
Microsoft Windows 10=20h2
Microsoft Windows 10=1607
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 10=1909
Microsoft Windows 10=2004
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2016=1909
Microsoft Windows Server 2016=2004
Microsoft Windows Server 2019
Remediation
Event History
May 11, 2021
CVE Published
07:11 PM
Data Sourced
07:11 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2021-28479?
CVE-2021-28479 is a vulnerability in Windows CSC Service that allows information disclosure.
2
Which software is affected by CVE-2021-28479?
Microsoft Windows 10, Microsoft Windows 8.1, Microsoft Windows RT 8.1, Microsoft Windows Server 2012, Microsoft Windows Server 2016, and Microsoft Windows Server 2019 are affected by CVE-2021-28479.
3
What is the severity of CVE-2021-28479?
The severity of CVE-2021-28479 is medium, with a severity value of 5.5.
4
How can I fix CVE-2021-28479?
Apply the security updates provided by Microsoft to fix CVE-2021-28479.
5
Where can I find more information about CVE-2021-28479?
You can find more information about CVE-2021-28479 on the Microsoft Security Response Center website.