CVE-2021-42298: Microsoft Defender Remote Code Execution Vulnerability
Published Nov 10, 2021
·Updated
Microsoft Defender Remote Code Execution Vulnerability
Affected Software
1 affected component
Microsoft Malware Protection Engine<1.1.18700.3
Remediation
Event History
Nov 10, 2021
CVE Published
12:47 AM
Data Sourced
12:47 AM
DescriptionSeverity
Data Sourced
via NVD·01:19 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-42298?
CVE-2021-42298 is a vulnerability in Microsoft Defender that allows remote code execution.
2
How severe is CVE-2021-42298?
CVE-2021-42298 has a severity rating of 7.8, which is considered critical.
3
What software is affected by CVE-2021-42298?
The affected software is Microsoft Malware Protection Engine version up to exclusive 1.1.18700.3.
4
How can I fix CVE-2021-42298?
To fix CVE-2021-42298, update your Microsoft Malware Protection Engine to a version higher than 1.1.18700.3.
5
Where can I find more information about CVE-2021-42298?
You can find more information about CVE-2021-42298 in the Microsoft Security Guidance Advisory at the following link: [https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-42298](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-42298).