cbcvebase.

Microsoft Windows 10 vulnerabilities

2,804 known vulnerabilities affecting microsoft/windows_10.

Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27

Vulnerabilities

Page 136 of 141
CVE-2021-28326P4MEDIUMCVSS 6.1v20h2v1607+4 more2021-04-13
CVE-2021-28326 [MEDIUM] CVE-2021-28326: Windows AppX Deployment Server Denial of Service Vulnerability Windows AppX Deployment Server Denial of Service Vulnerability
nvd
CVE-2018-8649P4MEDIUMCVSS 5.5v1809vVersion 1809 for 32-bit Systems+2 more2018-12-12
CVE-2018-8649 [MEDIUM] CVE-2018-8649: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Win A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." This affects Windows 10, Windows Server 2019.
nvd
CVE-2020-0885P4MEDIUMCVSS 4.3v1607v1709+4 more2020-03-12
CVE-2020-0885 [MEDIUM] CVE-2020-0885: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows Graphics Component Information Disclosure Vulnerability'.
nvd
CVE-2022-21839P4MEDIUMCVSS 5.5v18092022-01-11
CVE-2022-21839 [MEDIUM] CVE-2022-21839: Windows Event Tracing Discretionary Access Control List Denial of Service Vulnerability Windows Event Tracing Discretionary Access Control List Denial of Service Vulnerability
nvd
CVE-2016-3230P4MEDIUMCVSS 5.0v15112016-06-16
CVE-2016-3230 [MEDIUM] CWE-20 CVE-2016-3230: The Search component in Microsoft Windows 7, Windows Server 2008 R2 SP1, Windows 8.1, Windows Server The Search component in Microsoft Windows 7, Windows Server 2008 R2 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to cause a denial of service (performance degradation) via a crafted application, aka "Windows Search Component Denial of Service Vulnerability."
nvd
CVE-2018-8116P4MEDIUMCVSS 5.5v1511v1607+12 more2018-04-12
CVE-2018-8116 [MEDIUM] CVE-2018-8116: A denial of service vulnerability exists in the way that Windows handles objects in memory, aka "Mic A denial of service vulnerability exists in the way that Windows handles objects in memory, aka "Microsoft Graphics Component Denial of Service Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2020-17045P4MEDIUMCVSS 5.5v20h2v1607+5 more2020-11-11
CVE-2020-17045 [MEDIUM] CVE-2020-17045: Windows KernelStream Information Disclosure Vulnerability Windows KernelStream Information Disclosure Vulnerability
nvd
CVE-2020-16999P4MEDIUMCVSS 5.5v20h2v1607+5 more2020-11-11
CVE-2020-16999 [MEDIUM] CVE-2020-16999: Windows WalletService Information Disclosure Vulnerability Windows WalletService Information Disclosure Vulnerability
nvd
CVE-2021-36962P4MEDIUMCVSS 5.5v20h2v21h1+4 more2021-09-15
CVE-2021-36962 [MEDIUM] CVE-2021-36962: Windows Installer Information Disclosure Vulnerability Windows Installer Information Disclosure Vulnerability
nvd
CVE-2020-1261P4MEDIUMCVSS 5.5v1607v1709+4 more2020-06-09
CVE-2020-1261 [MEDIUM] CVE-2020-1261: An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles obje An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1263.
nvd
CVE-2020-1120P4MEDIUMCVSS 5.5v20042020-06-09
CVE-2020-1120 [MEDIUM] CVE-2020-1120: A denial of service vulnerability exists when Connected User Experiences and Telemetry Service impro A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-1244.
nvd
CVE-2020-1263P4MEDIUMCVSS 5.5v1607v1709+5 more2020-06-09
CVE-2020-1263 [MEDIUM] CVE-2020-1263: An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles obje An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1261.
nvd
CVE-2017-0099P4MEDIUMCVSS 5.4v1511v16072017-03-17
CVE-2017-0099 [MEDIUM] CVE-2017-0099: Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows guest OS users, running as virtual machines, to cause a denial of service via a crafted application, aka "Hyper-V Denial of Service Vulnerability." This vulnera
nvd
CVE-2017-0164P4MEDIUMCVSS 4.4v16072017-04-12
CVE-2017-0164 [MEDIUM] CWE-20 CVE-2017-0164: A denial of service vulnerability exists in Windows 10 1607 and Windows Server 2016 Active Directory A denial of service vulnerability exists in Windows 10 1607 and Windows Server 2016 Active Directory when an authenticated attacker sends malicious search queries, aka "Active Directory Denial of Service Vulnerability."
nvd
CVE-2017-0097P4MEDIUMCVSS 5.4v1511v16072017-03-17
CVE-2017-0097 [MEDIUM] CVE-2017-0097: Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 and R2; Windows 10, 1511, and 1607; and Windows Server 2016 allows guest OS users, running as virtual machines, to cause a denial of service via a crafted application, aka "Hyper-V Denial of Service Vulnerability." This vulnerability is
nvd
CVE-2017-0074P4MEDIUMCVSS 5.4v1511v16072017-03-17
CVE-2017-0074 [MEDIUM] CWE-20 CVE-2017-0074: Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 and R2; Windows 10, 1511, and 1607; and Windows Server 2016 allows guest OS users, running as virtual machines, to cause a denial of service via a crafted application, aka "Hyper-V Denial of Service Vulnerability." This vulnerabil
nvd
CVE-2022-29140P4MEDIUMCVSS 5.5v20h2v21h1+4 more2022-05-10
CVE-2022-29140 [MEDIUM] CVE-2022-29140: Windows Print Spooler Information Disclosure Vulnerability Windows Print Spooler Information Disclosure Vulnerability
nvd
CVE-2020-17138P4MEDIUMCVSS 5.5v16072020-12-10
CVE-2020-17138 [MEDIUM] CVE-2020-17138: Windows Error Reporting Information Disclosure Vulnerability Windows Error Reporting Information Disclosure Vulnerability
nvd
CVE-2020-0921P4MEDIUMCVSS 5.5v1607v1709+5 more2020-09-11
CVE-2020-0921 [MEDIUM] CVE-2020-0921: Microsoft Graphics Component Denial of Service Vulnerability Microsoft Graphics Component Denial of Service Vulnerability
nvd
CVE-2023-21776P4MEDIUMCVSS 5.5v20h2v21h2+3 more2023-01-10
CVE-2023-21776 [MEDIUM] CWE-125 CVE-2023-21776: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
Microsoft Windows 10 vulnerabilities | cvebase