QID 376001

Date Published: 2022-01-03

QID 376001: Microsoft PowerShell Information Disclosure Vulnerability (CVE-2021-41355)

Microsoft has released a security Update for PowerShell which resolves Information Disclosure Vulnerability.
Note: This does not affect windows operating system. Affected versions:
Powershell versions 7.1.x

QID Detection Logic: (Authenticated)
This QID detects vulnerable versions of powershell using pwsh --version

Successful exploitation of this vulnerability could lead to Disclosure of Sensitive Information.

  • CVSS V3 rated as Medium - 5.7 severity.
  • CVSS V2 rated as Low - 2.9 severity.
  • Solution
    The vendor has released patch in PowerShell version 7.1.5For more information please visit here

    CVEs related to QID 376001

    Software Advisories
    Advisory ID Software Component Link
    CVE-2021-41355 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41355