Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2021-29337 — CVE-2021-29337 - Privilege Escalation in MODAPI.sys (MSI Dragon Center) | Kitploit
Tools/GitHubGitHub/rjt-gupta/cve-2021-29337
Privilege EscalationVulnerability AnalysisExploitationBinary Exploitation
GitHubrjt-gupta/cve-2021-29337

CVE-2021-29337

CVE-2021-29337 - Privilege Escalation in MODAPI.sys (MSI Dragon Center)

View Repository
31884 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2021-29337 - Privilege Escalation in MODAPI.sys (MSI Dragon Center)

General

  • Affected Product: MSI Dragon Center
  • Affected Version: 2.0.104.0
  • CVE MITRE

Description

A vulnerable kernel driver MODAPI.sys in dragon center exposes IOCTL 0x9C406104 which allows low-privileged users to interact directly with physical memory by calling one of several driver routines (MmMapIoSpace) that map physical memory into the virtual address space.

Sending valid input and output buffers via DeviceIoControl allows arbitrary manipulation of the kernel memory in the latest Windows 10 depicting user-mode data being passed to the MmMapIoSpace routine. This vulnerability could possibly allow local privilege escalation to NT AUTHORITY\SYSTEM.

Inspiration from Legends

  • @DownWithup
  • @h0mbre
Download Tool