#VU53113 Use-after-free in Windows and Windows Server - CVE-2021-31166
Published: May 11, 2021 / Updated: October 25, 2024
Windows
Windows Server
Microsoft
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error in HTTP Protocol Stack. A remote attacker can send a specially crafted HTTP request to the affected system and execute arbitrary code.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.