CVE-2021-43240: NTFS Set Short Name Elevation of Privilege Vulnerability
Published Dec 15, 2021
·Updated
NTFS Set Short Name Elevation of Privilege Vulnerability
Affected Software
20 affected components
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=21h1
Microsoft Windows 10=21h1
Microsoft Windows 10=21h1
Microsoft Windows 10=21h2
Microsoft Windows 10=21h2
Microsoft Windows 10=21h2
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=2004
Microsoft Windows 10=2004
Microsoft Windows 10=2004
Microsoft Windows 11
Microsoft Windows 11
Microsoft Windows Server=20h2
Microsoft Windows Server=2022
Microsoft Windows Server 2016=2004
Remediation
Event History
Dec 15, 2021
CVE Published
via MITRE·02:15 PM
Data Sourced
via MITRE·02:15 PM
DescriptionSeverity
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-43240?
CVE-2021-43240 is rated as a medium severity vulnerability, indicating a potential for elevation of privilege.
2
How do I fix CVE-2021-43240?
To fix CVE-2021-43240, you should apply the latest security updates provided by Microsoft for your affected version of Windows.
3
Which Windows versions are affected by CVE-2021-43240?
CVE-2021-43240 affects multiple versions of Windows 10, including 20H2, 21H1, 21H2, and Windows 11, along with several versions of Windows Server.
4
What type of attack does CVE-2021-43240 enable?
CVE-2021-43240 enables an attacker to execute arbitrary code with elevated privileges on a vulnerable system.
5
Is CVE-2021-43240 known to be actively exploited?
As of the last update, there are no public reports indicating that CVE-2021-43240 is actively being exploited, but it is advisable to implement fixes promptly.