Critical severity9.8CISA KEVNVD Advisory· Published May 11, 2021· Updated Jun 17, 2026
CVE-2021-31166
CVE-2021-31166
Description
HTTP Protocol Stack Remote Code Execution Vulnerability
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- cpe:2.3:o:microsoft:windows_10_1809:10.0.19041.982:*:*:*:*:*:x64:*Range: 10.0.0
cpe:2.3:o:microsoft:windows_10_20H2:10.0.19042.982:*:*:*:*:*:x86:*+ 1 more
- cpe:2.3:o:microsoft:windows_10_20H2:10.0.19042.982:*:*:*:*:*:x86:*range: 10.0.0
- cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:*:*range: <10.0.19042.982
- cpe:2.3:o:microsoft:windows_server_2004:*:*:*:*:*:*:*:*Range: <10.0.19041.982
- cpe:2.3:o:microsoft:windows_server_20h2:*:*:*:*:*:*:*:*Range: <10.0.19042.982
Patches
Vulnerability mechanics
References
3- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31166nvdPatchVendor Advisory
- packetstormsecurity.com/files/162722/Microsoft-HTTP-Protocol-Stack-Remote-Code-Execution.htmlnvdThird Party AdvisoryVDB Entry
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.