Microsoft Windows 10 vulnerabilities
2,804 known vulnerabilities affecting microsoft/windows_10.
Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27
Vulnerabilities
Page 125 of 141
CVE-2020-1259P4MEDIUMCVSS 4.3v1607v1709+4 more2020-06-09
CVE-2020-1259 [MEDIUM] CVE-2020-1259: A security feature bypass vulnerability exists when Windows Host Guardian Service improperly handles
A security feature bypass vulnerability exists when Windows Host Guardian Service improperly handles hashes recorded and logged, aka 'Windows Host Guardian Service Security Feature Bypass Vulnerability'.
nvd
CVE-2021-28311P4MEDIUMCVSS 6.5v20h2v1607+4 more2021-04-13
CVE-2021-28311 [MEDIUM] CVE-2021-28311: Windows Application Compatibility Cache Denial of Service Vulnerability
Windows Application Compatibility Cache Denial of Service Vulnerability
nvd
CVE-2021-1696P4MEDIUMCVSS 5.5v20h2v1607+4 more2021-01-12
CVE-2021-1696 [MEDIUM] CVE-2021-1696: Windows Graphics Component Information Disclosure Vulnerability
Windows Graphics Component Information Disclosure Vulnerability
nvd
CVE-2018-8436P4MEDIUMCVSS 6.2v1803v32-bit Systems+9 more2018-09-13
CVE-2018-8436 [MEDIUM] CWE-20 CVE-2018-8436: A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fail
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8437, CVE-2018-8438.
nvd
CVE-2018-8437P4MEDIUMCVSS 6.2v18032018-09-13
CVE-2018-8437 [MEDIUM] CVE-2018-8437: A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fail
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8436, CVE-2018-8438.
nvd
CVE-2019-1292P4MEDIUMCVSS 4.9v1607v1703+4 more2019-09-11
CVE-2019-1292 [MEDIUM] CVE-2019-1292: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Win
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.
nvd
CVE-2019-0928P4MEDIUMCVSS 6.2v1607v1703+2 more2019-09-11
CVE-2019-0928 [MEDIUM] CWE-20 CVE-2019-0928: A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly v
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'.
nvd
CVE-2019-1399P4MEDIUMCVSS 6.2v1607v1709+3 more2019-11-12
CVE-2019-1399 [MEDIUM] CVE-2019-1399: A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly v
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-0712, CVE-2019-1309, CVE-2019-1310.
nvd
CVE-2021-28441P4MEDIUMCVSS 6.5v20h2v1809+2 more2021-04-13
CVE-2021-28441 [MEDIUM] CVE-2021-28441: Windows Hyper-V Information Disclosure Vulnerability
Windows Hyper-V Information Disclosure Vulnerability
nvd
CVE-2022-44679P4MEDIUMCVSS 6.5v20h2v21h1+4 more2022-12-13
CVE-2022-44679 [MEDIUM] CVE-2022-44679: Windows Graphics Component Information Disclosure Vulnerability
Windows Graphics Component Information Disclosure Vulnerability
nvd
CVE-2017-0051P4MEDIUMCVSS 5.4v16072017-03-17
CVE-2017-0051 [MEDIUM] CVE-2017-0051: Microsoft Windows 10 1607 and Windows Server 2016 allow remote attackers to cause a denial of servic
Microsoft Windows 10 1607 and Windows Server 2016 allow remote attackers to cause a denial of service (application hang) via a crafted Office document, aka "Microsoft Hyper-V Network Switch Denial of Service Vulnerability." This vulnerability is different from those described in CVE-2017-0074, CVE-2017-0076, CVE-2017-0097, CVE-2017-0098, and CVE-2017-0099.
nvd
CVE-2019-1071P4MEDIUMCVSS 5.5v1607v1703+4 more2019-07-15
CVE-2019-1071 [MEDIUM] CWE-200 CVE-2019-1071: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1073.
nvd
CVE-2019-1073P4MEDIUMCVSS 5.5v1607v1703+4 more2019-07-15
CVE-2019-1073 [MEDIUM] CVE-2019-1073: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1071.
nvd
CVE-2022-37965P4MEDIUMCVSS 5.9v20h2v21h1+3 more2022-10-11
CVE-2022-37965 [MEDIUM] CVE-2022-37965: Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
nvd
CVE-2017-8693P4MEDIUMCVSS 5.5v1511v1607+1 more2017-10-13
CVE-2017-8693 [MEDIUM] CWE-200 CVE-2017-8693: The Microsoft Graphics Component on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Ser
The Microsoft Graphics Component on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an information disclosure vulnerability in the way it handles objects in memory, aka "Microsoft Graphics Information Disclosure Vulnerability".
nvd
CVE-2019-1010P4MEDIUMCVSS 4.7v1607v1703+4 more2019-06-12
CVE-2019-1010 [MEDIUM] CWE-200 CVE-2019-1010: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1050P4MEDIUMCVSS 4.7v1607v1703+4 more2019-06-12
CVE-2019-1050 [MEDIUM] CWE-200 CVE-2019-1050: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1012P4MEDIUMCVSS 4.7v1607v1703+4 more2019-06-12
CVE-2019-1012 [MEDIUM] CWE-200 CVE-2019-1012: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1046P4MEDIUMCVSS 4.7v1607v1703+4 more2019-06-12
CVE-2019-1046 [MEDIUM] CWE-200 CVE-2019-1046: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1334P4MEDIUMCVSS 5.5v1607v1703+4 more2019-10-10
CVE-2019-1334 [MEDIUM] CWE-200 CVE-2019-1334: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1345.
nvd