CVE-2021-29337: Msi Dragon Center
High severity, CVSS 7.8. EPSS: 0.8% chance of exploitation in the next 30 days.
MODAPI.sys in MSI Dragon Center 2.0.104.0 allows low-privileged users to access kernel memory and potentially escalate privileges via a crafted IOCTL 0x9c406104 call. This IOCTL provides the MmMapIoSpace feature for mapping physical memory.
Affected products
- Msi Dragon Center: version 2.0.104.0 only
Published 2021-06-21. Last modified 2026-06-17.