CVE-2021-1732
KEV RANSOMWAREHIGH 7.8EPSS 78.4%
Windows Win32k Elevation of Privilege Vulnerability
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 78.38% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2021-11-03, used in ransomware campaigns
- Published
- 2021-02-25
- Updated
- 2026-08-12
Proof-of-concept exploits (24)
- http://packetstormsecurity.com/files/161880/Win32k-ConsoleControl-Offset-Confusion.html
- http://packetstormsecurity.com/files/166169/Win32k-ConsoleControl-Offset-Confusion-Privil…
- 4dp/CVE-2021-17324★ · 2023-03-09
- BeneficialCode/CVE-2021-17321★ · 2021-11-08
- ExploitCN/CVE-2021-1732-EXP-0★ · 2022-04-12
- KaLendsi/CVE-2021-1732-Exploit426★ · 2021-03-05
- Pai-Po/CVE-2021-173266★ · 2021-04-23
- ReJimp/Kernel_Exploit11★ · 2022-04-30
- YOunGWebER/cve_2021_17321★ · 2021-04-15
- asepsaepdin/CVE-2021-17321★ · 2023-07-13
- exploitblizzard/Windows-Privilege-Escalation-CVE-2021-173231★ · 2021-04-27
- fenalik/CVE-2021-173215★ · 2022-11-01
- fenasal/CVE-2021-17324★ · 2023-03-09
- jessica0f0116/cve_2022_21882-cve_2021_17324★ · 2022-10-17
- linuxdy/CVE-2021-1732_exp3★ · 2021-03-30
- oneoy/CVE-2021-1732-Exploit1★ · 2021-03-09
- r1l4-i3pur1l4/CVE-2021-17320★ · 2022-02-15
- r2bet/CVE-2021-17324★ · 2023-03-09
- ratw/CVE-2021-173215★ · 2022-11-01
- salutdamour/Kernel_Exploit11★ · 2022-04-30
- win32kdie/Kernel_Exploit11★ · 2022-04-30
- yangshifan-git/CVE-2021-17320★ · 2023-06-29
- flyinbedxyz/CVE-2021-1732
- po4sec/CVE-2021-1732
Metasploit modules (1)
Exploit collections (2)
- helloexp/0day/tree/master/00-CVE_EXP/CVE-2021-1732
- tzwlhack/Vulnerability/blob/main/Microsoft%20Windows10%20%E6%9C%AC%E5%9C%B0%E6%8F%90%E6%9…