CVE detail
CVE-2021-1647
Microsoft Defender Remote Code Execution Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 17.9 · diversity 13.0 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
5 source links · newest first
- 18th January – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 18th January, please download our Threat Intelligence Bulletin. Top Attacks and Breaches The European Medicines Agency (EMA), responsible for the approval of medicine for the European Union, has been hacked, leading to the exposure of third-party documents related to the Covid-19 vaccines online. CISA […]
vendorresearch.checkpoint.comJan 18, 2021, 3:05 PM Here’s an overview of some of last week’s most interesting news and articles: Top videoconferencing attacks and security best practices Videoconferencing has become a routine part of everyday life for remote workers, students, and families. Yet widespread adoption of this technology has also attracted nefarious characters whose motivations can range from simple disruption to full-out espionage. SolarWinds hack investigation reveals new Sunspot malware Crowdstrike researchers have documented Sunspot, a piece of malware used by the … More →
newswww.helpnetsecurity.comJan 17, 2021, 10:20 AM- Microsoft Patch Tuesday for January 2021 fixes 83 flaws, including an actively exploited issueSecurity Affairs
Microsoft Patch Tuesday security updates for January 2021 address 83 vulnerabilities, including a critical flaw actively exploited in the wild. Microsoft Patch Tuesday security updates for January 2021 fix 83 security vulnerabilities in multiple products, including Microsoft Windows, Edge (EdgeHTML-based), ChakraCore, Office and Microsoft Office Services and Web Apps, Visual Studio, Microsoft Malware Protection Engine, […]
newssecurityaffairs.comJan 13, 2021, 2:25 PM - January 2021 Patch Tuesday: Microsoft plugs Defender zero-day RCEHelp Net Security
On this January 2021 Patch Tuesday: Microsoft has plugged 83 CVEs, including a Microsoft Defender zero-day Adobe has delivered security updates for a variety of products SAP has released 10 security notes and updated 7 previously released ones Mozilla has fixed a critical vulnerability affecting Thunderbird Microsoft’s updates Microsoft has plugged 83 security holes, 10 of which are critical. One of the latter – a zero-day RCE (CVE-2021-1647) affecting Microsoft Defender antivirus – is being … More →
newswww.helpnetsecurity.comJan 12, 2021, 9:24 PM Microsoft on Tuesday released the first batch of security patches for 2021 with fixes for 83 documented security vulnerabilities, including a “critical” bug in the Defender security product that’s being actively exploited.
newswww.securityweek.comJan 12, 2021, 6:59 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2021-43226CVSS 7.8 · High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
KEV listed3 mentions - CVE-2021-41379CVSS 5.5 · Medium
Windows Installer Elevation of Privilege Vulnerability
- CVE-2021-40449CVSS 7.8 · High
Win32k Elevation of Privilege Vulnerability
- CVE-2021-40444CVSS 8.8 · High
<p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exp…
- CVE-2021-36955CVSS 7.8 · High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
KEV listed1 mention - CVE-2021-34484CVSS 7.8 · High
Windows User Profile Service Elevation of Privilege Vulnerability
KEV listed4 mentions