CVE-2021-27062 is a Remote Code Execution vulnerability affecting Microsoft HEVC Video Extensions. With a CVSS score of 7.8 (HIGH), it requires user interaction (UI:R) and local access (AV:L), but once exploited, it can lead to complete compromise of confidentiality, integrity, and availability (C:H/I:H/A:H). There is no known public exploit code (Metasploit, Nuclei, ExploitDB) and it is not listed in CISA's KEV catalog, indicating no active exploitation. Community discussion and media coverage are minimal, suggesting low public awareness despite its potential impact.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:high_efficiency_video_coding:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.