High severity7.8NVD Advisory· Published Mar 29, 2023· Updated Jun 17, 2026
CVE-2021-41526
CVE-2021-41526
Description
A vulnerability has been reported in the windows installer (MSI) built with InstallScript custom action. This vulnerability may allow privilege escalation when invoked ‘repair’ of the MSI which has an InstallScript custom action.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- windows installer (MSI)/windows installer (MSI)description
Patches
Vulnerability mechanics
References
3- community.flexera.com/t5/InstallShield-Knowledge-Base/CVE-2021-41526-Privilege-escalation-vulnerability-during-MSI/ta-p/218137/jump-to/first-unread-messagenvdVendor Advisory
- github.com/mandiant/Vulnerability-Disclosures/blob/master/MNDT-2021-0011/MNDT-2021-0011.mdnvdThird Party Advisory
- seclists.org/fulldisclosure/2024/Apr/24nvd
News mentions
0No linked articles in our index yet.