CVE-2021-29337: Msi Dragon Center

High severity, CVSS 7.8. EPSS: 0.8% chance of exploitation in the next 30 days.

MODAPI.sys in MSI Dragon Center 2.0.104.0 allows low-privileged users to access kernel memory and potentially escalate privileges via a crafted IOCTL 0x9c406104 call. This IOCTL provides the MmMapIoSpace feature for mapping physical memory.

Affected products

  • Msi Dragon Center: version 2.0.104.0 only

Published 2021-06-21. Last modified 2026-06-17.