Description
This detection identifies exploitation attempts targeting CVE-2021-31956, which has a HIGH severity rating. Microsoft's advisory names this issue the Windows NTFS Elevation of Privilege Vulnerability, which lets a local cyberattacker gain elevated privileges on a target system.
Stats
- First seen
- May 2022
- Last seen
- September 2026
CVEs
Alert name variants
| Alert Name |
|---|
| Win64.Exploit.CVE-2021-31956 |
Related IPS Signatures
| Signature Name |
|---|
| OS-WINDOWS Windows NTFS elevation of privilege attempt |