What happened
Microsoft Active Directory Domain Services contains an unspecified vulnerability that allows for privilege escalation.
Affected versions
Active Directory: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
PoC-in-GitHub · safebuffer/sam-the-adminExploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user★ 1067safebuffer2021-12-11CandidatePoC-in-GitHub · Ridter/noPacExploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user★ 1023Ridter2021-12-13CandidatePoC-in-GitHub · waterrr/noPacExploiting CVE-2021-42278 and CVE-2021-42287★ 6waterrr2021-12-13CandidatePoC-in-GitHub · ly4k/PachinePython implementation for CVE-2021-42278 (Active Directory Privilege Escalation)★ 277ly4k2021-12-13CandidatePoC-in-GitHub · cybersecurityworks553/noPac-detectionDetection script for CVE-2021-42278 and CVE-2021-42287★ 2cybersecurityworks5532021-12-27CandidatePoC-in-GitHub · xLTJ/noPacGo implementation of NoPac, exploiting CVE-2021-42278 and CVE-2021-42287★ 0xLTJ2026-07-07CandidateSource timeline
Discovered through CISA Known Exploited VulnerabilitiesView source ↗
Added to CISA Known Exploited Vulnerabilities catalogView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.