Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-40454


Rich Text Edit Control Information Disclosure Vulnerability


Published

2021-10-13T01:15:09.797

Last Modified

2024-11-21T06:24:09.067

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:N/A:N

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-312

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application microsoft 365_apps - Yes
Application microsoft 365_apps - Yes
Application microsoft office 2013 Yes
Application microsoft office 2013 Yes
Application microsoft office 2013_rt Yes
Application microsoft office 2016 Yes
Application microsoft office 2016 Yes
Application microsoft office 2019 Yes
Application microsoft office 2019 Yes
Application microsoft office 2019 Yes
Application microsoft office 2021 Yes
Application microsoft office 2021 Yes
Application microsoft office 2021 Yes
Operating System microsoft windows_10 - Yes
Operating System microsoft windows_10 - Yes
Operating System microsoft windows_10 20h2 Yes
Operating System microsoft windows_10 20h2 Yes
Operating System microsoft windows_10 20h2 Yes
Operating System microsoft windows_10 21h1 Yes
Operating System microsoft windows_10 21h1 Yes
Operating System microsoft windows_10 21h1 Yes
Operating System microsoft windows_10 1607 Yes
Operating System microsoft windows_10 1607 Yes
Operating System microsoft windows_10 1809 Yes
Operating System microsoft windows_10 1809 Yes
Operating System microsoft windows_10 1809 Yes
Operating System microsoft windows_10 1909 Yes
Operating System microsoft windows_10 1909 Yes
Operating System microsoft windows_10 1909 Yes
Operating System microsoft windows_10 2004 Yes
Operating System microsoft windows_10 2004 Yes
Operating System microsoft windows_10 2004 Yes
Operating System microsoft windows_11 - Yes
Operating System microsoft windows_11 - Yes
Operating System microsoft windows_8.1 - Yes
Operating System microsoft windows_8.1 - Yes
Operating System microsoft windows_rt_8.1 - Yes
Operating System microsoft windows_server 20h2 Yes
Operating System microsoft windows_server 2004 Yes
Operating System microsoft windows_server_2012 - Yes
Operating System microsoft windows_server_2012 r2 Yes
Operating System microsoft windows_server_2016 - Yes
Operating System microsoft windows_server_2019 - Yes
Operating System microsoft windows_server_2022 * Yes

References