High severity7.3NVD Advisory· Published Mar 23, 2022· Updated Jun 17, 2026
CVE-2021-44226
CVE-2021-44226
Description
Razer Synapse before 3.7.0228.022817 allows privilege escalation because it relies on %PROGRAMDATA%\Razer\Synapse3\Service\bin even if %PROGRAMDATA%\Razer has been created by any unprivileged user before Synapse is installed. The unprivileged user may have placed Trojan horse DLLs there.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
8- packetstormsecurity.com/files/166485/Razer-Synapse-3.6.x-DLL-Hijacking.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2022/Mar/51nvdExploitMailing ListThird Party Advisory
- www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-058.txtnvdExploitThird Party Advisory
- www.razer.com/communitynvdVendor Advisory
- packetstormsecurity.com/files/170772/Razer-Synapse-3.7.0731.072516-Local-Privilege-Escalation.htmlnvdNot Applicable
- seclists.org/fulldisclosure/2023/Jan/26nvdNot Applicable
- packetstormsecurity.com/files/174696/Razer-Synapse-Race-Condition-DLL-Hijacking.htmlnvd
- seclists.org/fulldisclosure/2023/Sep/6nvd
News mentions
0No linked articles in our index yet.