High severity7.8CISA KEVNVD Advisory· Published Feb 25, 2021· Updated Aug 12, 2026
CVE-2021-1732
CVE-2021-1732
Description
Windows Win32k Elevation of Privilege Vulnerability
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
15- cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*+ 2 more
- cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*range: 10.0.0
- cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*range: 10.0.0
- cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:x86:*+ 1 more
- cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:x86:*range: 10.0.0
- cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10_2004:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_20H2:*:*:*:*:*:*:x86:*+ 1 more
- cpe:2.3:o:microsoft:windows_10_20H2:*:*:*:*:*:*:x86:*range: 10.0.0
- cpe:2.3:o:microsoft:windows_10_20h2:-:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_1909:-:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2004:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*range: 10.0.0
- cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_20h2:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-1732nvdPatchVendor Advisory
- packetstormsecurity.com/files/161880/Win32k-ConsoleControl-Offset-Confusion.htmlnvdExploitThird Party AdvisoryVDB Entry
- packetstormsecurity.com/files/166169/Win32k-ConsoleControl-Offset-Confusion-Privilege-Escalation.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
1- Inside the customer environment: Where threat actors, vulnerabilities, and exposed assets intersectTenable Blog · May 27, 2026