Microsoft Windows 10 vulnerabilities
2,804 known vulnerabilities affecting microsoft/windows_10.
Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27
Vulnerabilities
Page 51 of 141
CVE-2017-0024P3HIGHCVSS 7.8v1511v16072017-03-17
CVE-2017-0024 [HIGH] CVE-2017-0024: The kernel-mode drivers in Microsoft Windows 10 1607 and Windows Server 2016 allow local users to ga
The kernel-mode drivers in Microsoft Windows 10 1607 and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0026, CVE-2017-0056, CVE-2017-0078, CVE-2017-0079, CVE-2017-0080, CVE-2017-0081, and CVE-2017-0082.
nvd
CVE-2017-0079P3HIGHCVSS 7.8v1511v16072017-03-17
CVE-2017-0079 [HIGH] CVE-2017-0079: The kernel-mode drivers in Windows 8.1; Windows Server 2012 R2; Windows RT 8.1; and Windows 10 Gold,
The kernel-mode drivers in Windows 8.1; Windows Server 2012 R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0026, CVE-2017-0056, CVE-2017-0078, CVE-2017-0080, C
nvd
CVE-2017-0080P3HIGHCVSS 7.8v1511v16072017-03-17
CVE-2017-0080 [HIGH] CVE-2017-0080: The kernel-mode drivers in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allow l
The kernel-mode drivers in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0026, CVE-2017-0056, CVE-2017-0078, CVE-2017-0079, CVE-2017-0081, and CVE-2
nvd
CVE-2017-0078P3HIGHCVSS 7.8v1511v16072017-03-17
CVE-2017-0078 [HIGH] CVE-2017-0078: The kernel-mode drivers in Microsoft Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; W
The kernel-mode drivers in Microsoft Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0026, CVE-20
nvd
CVE-2017-0081P3HIGHCVSS 7.8v1511v16072017-03-17
CVE-2017-0081 [HIGH] CVE-2017-0081: The kernel-mode drivers in Microsoft Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; W
The kernel-mode drivers in Microsoft Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0026, CVE-20
nvd
CVE-2017-0026P3HIGHCVSS 7.8v1511v16072017-03-17
CVE-2017-0026 [HIGH] CVE-2017-0026: The kernel-mode drivers in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allow l
The kernel-mode drivers in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0056, CVE-2017-0078, CVE-2017-0079, CVE-2017-0080, CVE-2017-0081, and CVE-2
nvd
CVE-2017-0082P3HIGHCVSS 7.8v15112017-03-17
CVE-2017-0082 [HIGH] CVE-2017-0082: The kernel-mode drivers in Microsoft Windows 10 Gold and 1511 allow local users to gain privileges v
The kernel-mode drivers in Microsoft Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0026, CVE-2017-0056, CVE-2017-0078, CVE-2017-0079, CVE-2017-0080, and CVE-2017-0081.
nvd
CVE-2021-24081P3HIGHCVSS 7.8v20h2v1607+4 more2021-02-25
CVE-2021-24081 [HIGH] CWE-787 CVE-2021-24081: Microsoft Windows Codecs Library Remote Code Execution Vulnerability
Microsoft Windows Codecs Library Remote Code Execution Vulnerability
nvd
CVE-2021-40465P3HIGHCVSS 7.8v20h2v21h1+4 more2021-10-13
CVE-2021-40465 [HIGH] CVE-2021-40465: Windows Text Shaping Remote Code Execution Vulnerability
Windows Text Shaping Remote Code Execution Vulnerability
nvd
CVE-2016-3355P3HIGHCVSS 7.8v1511v16072016-09-14
CVE-2016-3355 [HIGH] CWE-264 CVE-2016-3355: The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 S
The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to gain privileges via a crafted application, aka "GDI Elevation of Privilege Vulnerability."
nvd
CVE-2021-42276P3HIGHCVSS 7.8v20h2v21h1+4 more2021-11-10
CVE-2021-42276 [HIGH] CVE-2021-42276: Microsoft Windows Media Foundation Remote Code Execution Vulnerability
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
nvd
CVE-2021-34533P3HIGHCVSS 7.8v20h2v21h1+4 more2021-08-12
CVE-2021-34533 [HIGH] CVE-2021-34533: Windows Graphics Component Font Parsing Remote Code Execution Vulnerability
Windows Graphics Component Font Parsing Remote Code Execution Vulnerability
nvd
CVE-2016-7221P3HIGHCVSS 7.8v1511v16072016-11-10
CVE-2016-7221 [HIGH] CWE-264 CVE-2016-7221: Input Method Editor (IME) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Window
Input Method Editor (IME) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 mishandles DLL loading, which allows local users to gain privileges via unspecified vectors, aka "Windows IME Elevation of Priv
nvd
CVE-2021-34521P3HIGHCVSS 7.8v20h2v21h1+1 more2021-07-14
CVE-2021-34521 [HIGH] CVE-2021-34521: Raw Image Extension Remote Code Execution Vulnerability
Raw Image Extension Remote Code Execution Vulnerability
nvd
CVE-2021-34503P3HIGHCVSS 7.8v1809v19092021-07-14
CVE-2021-34503 [HIGH] CVE-2021-34503: Microsoft Windows Media Foundation Remote Code Execution Vulnerability
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
nvd
CVE-2020-0965P3HIGHCVSS 7.8v1607v1709+4 more2020-04-15
CVE-2020-0965 [HIGH] CVE-2020-0965: A remoted code execution vulnerability exists in the way that Microsoft Windows Codecs Library handl
A remoted code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory, aka 'Microsoft Windows Codecs Library Remote Code Execution Vulnerability'.
nvd
CVE-2021-43232P3HIGHCVSS 7.8v20h2v21h1+5 more2021-12-15
CVE-2021-43232 [HIGH] CVE-2021-43232: Windows Event Tracing Remote Code Execution Vulnerability
Windows Event Tracing Remote Code Execution Vulnerability
nvd
CVE-2016-0176P3HIGHCVSS 7.8v15112016-05-11
CVE-2016-0176 [HIGH] CWE-264 CVE-2016-0176: dxgkrnl.sys in the DirectX Graphics kernel subsystem in the kernel-mode drivers in Microsoft Windows
dxgkrnl.sys in the DirectX Graphics kernel subsystem in the kernel-mode drivers in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Microsoft DirectX Graphics Kernel Subsystem Elevation of P
nvd
CVE-2021-34441P3HIGHCVSS 7.8v20h2v21h1+4 more2021-07-16
CVE-2021-34441 [HIGH] CVE-2021-34441: Microsoft Windows Media Foundation Remote Code Execution Vulnerability
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
nvd
CVE-2021-34500P3HIGHCVSS 7.7v20h2v21h1+4 more2021-07-14
CVE-2021-34500 [HIGH] CVE-2021-34500: Windows Kernel Memory Information Disclosure Vulnerability
Windows Kernel Memory Information Disclosure Vulnerability
nvd