References https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-40444 https://www.microsoft.com/en-us/security/blog/2021/09/15/analyzing-attacks-that-exploit-the-mshtml-cve-2021-40444-vulnerability/ https://nvd.nist.gov/vuln/detail/CVE-2021-40444 https://www.h3c.com/cn/d_202112/1519610_30003_0.htm https://blog.csdn.net/huayimy/article/details/128868484 https://www.xaipe.edu.cn/wlglzx/info/1036/2251.htm https://blog.nsfocus.net/microsoft-mshtml/ https://www.picussecurity.com/resource/blog/simulating-microsoft-mshtml-cve-2021-40444-zero-day-exploit https://beaglesecurity.com/blog/vulnerability/mshtml-rce-vulnerability.html https://success.trendmicro.com/en-US/solution/KA-0012335
Related VulnerabilitiesPoCCVE-2026-58644: Microsoft SharePoint Server - WS-Federation BinaryFormatter Deserialization RCEMicrosoft SharePoint /_layouts/15/ToolPane.aspx 代码执行漏洞(CVE-2025-53770)Microsoft SharePoint Server /_trust/default.aspx 代码执行漏洞(CVE-2026-50522)Microsoft SharePoint Server JWT 权限绕过漏洞(CVE-2026-55040)PoCCVE-2021-28480: Microsoft Exchange - Pre-Auth SSRF / ACL Bypass (ProxyNotFound)PoCCVE-2021-28481: Microsoft Exchange - Pre-Auth SSRF / ACL Bypass (ProxyNotFound)PoCsharepoint-lists-api-disclosure: Microsoft SharePoint - List API DisclosurePoCsharepoint-layouts-disclosure: Microsoft SharePoint - Layouts DisclosurePoCsharepoint-masterpage-disclosure: Microsoft SharePoint - Master Page DisclosurePoCsharepoint-site-metadata-disclosure: Microsoft SharePoint - Site Metadata DisclosurePoCsharepoint-sitepages-disclosure: Microsoft SharePoint - Site Pages DisclosurePoCCVE-2025-49706: Microsoft SharePoint Server - Authentication Bypass(CVE-2025-53770)Microsoft SharePoint Server反序列化漏洞允许远程代码执行