CVE Database
/

CVE-2021-26887

Back to search

CVE-2021-26887

Published: Mar 11, 2021

Modified: Nov 19, 2024

PUBLISHED

CVSS v3.1

7.8

HIGH

Description

<p>An elevation of privilege vulnerability exists in Microsoft Windows when Folder redirection has been enabled via Group Policy. When folder redirection file server is co-located with Terminal server, an attacker who successfully exploited the vulnerability would be able to begin redirecting another user's personal data to a created folder.</p> <p>To exploit the vulnerability, an attacker can create a new folder under the Folder Redirection root path and create a junction on a newly created User folder. When the new user logs in, Folder Redirection would start redirecting to the folder and copying personal data.</p> <p>This elevation of privilege vulnerability can only be addressed by reconfiguring Folder Redirection with Offline files and restricting permissions, and NOT via a security update for affected Windows Servers. See the <strong>FAQ</strong> section of this CVE for configuration guidance.</p>

VendorProductVersions

Microsoft

Windows 10 Version 2004

affected
N/A

Microsoft

Windows Server version 2004

affected
N/A

Microsoft

Windows 10 Version 20H2

affected
N/A

Microsoft

Windows Server version 20H2

affected
N/A

Microsoft

Windows 10 Version 1803

affected
N/A

Microsoft

Windows 10 Version 1809

affected
N/A

Microsoft

Windows Server 2019

affected
N/A

Microsoft

Windows Server 2019 (Server Core installation)

affected
N/A

Microsoft

Windows 10 Version 1909

affected
N/A

Microsoft

Windows Server, version 1909 (Server Core installation)

affected
N/A

Microsoft

Windows 10 Version 1507

affected
N/A

Microsoft

Windows 10 Version 1607

affected
N/A

Microsoft

Windows Server 2016

affected
N/A

Microsoft

Windows Server 2016 (Server Core installation)

affected
N/A

Microsoft

Windows 7

affected
N/A

Microsoft

Windows 7 Service Pack 1

affected
N/A

Microsoft

Windows 8.1

affected
N/A

Microsoft

Windows Server 2008 Service Pack 2

affected
N/A

Microsoft

Windows Server 2008 Service Pack 2 (Server Core installation)

affected
N/A

Microsoft

Windows Server 2008 Service Pack 2

affected
N/A

Microsoft

Windows Server 2008 R2 Service Pack 1

affected
N/A

Microsoft

Windows Server 2008 R2 Service Pack 1 (Server Core installation)

affected
N/A

Microsoft

Windows Server 2012

affected
6.2.0 - < publication

Microsoft

Windows Server 2012 (Server Core installation)

affected
6.2.0 - < publication

Microsoft

Windows Server 2012 R2

affected
N/A

Microsoft

Windows Server 2012 R2 (Server Core installation)

affected
N/A

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now