Microsoft
Microsoft APP Installer: vulnerabilidades y CVE
Microsoft APP Installer tiene 3 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 0 son críticas y 1 figuran en el catálogo de explotación activa de CISA.
CVE3
Últimos 12 meses1
Críticas0
Explotadas activamente1
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-43890 | Alta (7.1) | 10% | ⚠ Explotación activa | 15 dic 2021 | We have investigated reports of a spoofing vulnerability in AppX installer that affects Microsoft Windows. Microsoft is aware of attacks that attempt to exploit this vulnerability by using specially crafted packages… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-68821 | Alta (7.8) | 0.32% | — | 11 ago 2026 | Improper privilege management in Windows Package Manager allows an authorized attacker to elevate privileges locally. |
| CVE-2024-38177 | Alta (7.8) | 0.86% | — | 13 ago 2024 | Windows App Installer Spoofing Vulnerability |
| CVE-2021-43890 | Alta (7.1) | 10% | ⚠ Explotación activa | 15 dic 2021 | We have investigated reports of a spoofing vulnerability in AppX installer that affects Microsoft Windows. Microsoft is aware of attacks that attempt to exploit this vulnerability by using specially crafted packages… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.