References https://nvd.nist.gov/vuln/detail/CVE-2021-1732 https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2021-1732 https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/os/Windows-Win32k-%E6%9C%AC%E5%9C%B0%E6%8F%90%E6%9D%83%E6%BC%8F%E6%B4%9E-CVE-2021-1732.md https://cloud.tencent.com/developer/article/1807026 https://www.anquanke.com/post/id/241804 https://googleprojectzero.github.io/0days-in-the-wild/0day-RCAs/2021/CVE-2021-1732.html https://ti.dbappsecurity.com.cn/blog/index.php/2021/02/10/windows-kernel-zero-day-exploit-is-used-by-bitter-apt-in-targeted-attack/ https://www.sentinelone.com/vulnerability-database/cve-2021-1732/ https://unit42.paloaltonetworks.com/win32k-analysis-part-2/ https://github.com/KaLendsi/CVE-2021-1732-Exploit
Related VulnerabilitiesWindows截图工具NTLM信息泄露漏洞(CVE-2026-33829)Gradio /static//windows/win.ini 文件读取漏洞 (CVE-2026-28414)Windows Shell Link 敏感信息泄露与欺骗漏洞(CVE-2026-25185)PoCCVE-2025-13315: Twonky Server 8.5.2 on Linux and Windows - Log File ExposureWindows PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710)Windows 11 PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710)Windows 11 RAiLaunchAdminProcess 管理员保护特权提升漏洞(CVE-2025-62522)Vite开发服务器Windows环境下文件泄露漏洞(CVE-2025-41246) VMware Tools for Windows授权不当漏洞Windows NTLMv2-SSP Hash信息泄露漏洞(CVE-2025-50154)(CVE-2025-26513)SAN Host Utilities for Windows 8.0前版本安装程序本地权限提升漏洞(CVE-2025-8088) WinRAR Windows版本路径遍历漏洞可导致任意代码执行PoCCVE-2015-1635: Microsoft Windows 'HTTP.sys' - Remote Code Execution