Microsoft Windows 10 vulnerabilities
2,804 known vulnerabilities affecting microsoft/windows_10.
Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27
Vulnerabilities
Page 55 of 141
CVE-2020-17028P3HIGHCVSS 7.8v20h2v1607+5 more2020-11-11
CVE-2020-17028 [HIGH] CVE-2020-17028: Windows Remote Access Elevation of Privilege Vulnerability
Windows Remote Access Elevation of Privilege Vulnerability
nvd
CVE-2021-43238P3HIGHCVSS 7.8v20h2v21h1+5 more2021-12-15
CVE-2021-43238 [HIGH] CWE-59 CVE-2021-43238: Windows Remote Access Elevation of Privilege Vulnerability
Windows Remote Access Elevation of Privilege Vulnerability
nvd
CVE-2021-38633P3HIGHCVSS 7.8v20h2v21h1+4 more2021-09-15
CVE-2021-38633 [HIGH] CWE-269 CVE-2021-38633: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2020-1245P3HIGHCVSS 7.8v1607v1709+5 more2020-09-11
CVE-2020-1245 [HIGH] CVE-2020-1245: <p>An elevation of privilege vulnerability exists in Windows when the Win32k component fails to prop
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
To exploit this vul
nvd
CVE-2020-1272P3HIGHCVSS 7.8v1607v1709+4 more2020-06-09
CVE-2020-1272 [HIGH] CVE-2020-1272: An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer f
An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an insecure library loading behavior.A locally authenticated attacker could run arbitrary code with elevated system privileges, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE
nvd
CVE-2023-23420P3HIGHCVSS 7.8fixed in 10.0.10240.198052023-03-14
CVE-2023-23420 [HIGH] CWE-416 CVE-2023-23420: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2020-1431P3HIGHCVSS 7.8v1803v1809+3 more2020-07-14
CVE-2020-1431 [HIGH] CWE-269 CVE-2020-1431: An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperl
An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to system files.To exploit this vulnerability, an authenticated attacker would need to run a specially crafted application to elevate privileges.The security update addresses the vulnerability by correc
nvd
CVE-2020-1553P3HIGHCVSS 7.8v1607v1709+5 more2020-08-17
CVE-2020-1553 [HIGH] CVE-2020-1553: An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects i
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in an elevated context.
An attacker could exploit this vulnerability by running a specially crafted application on the victim system.
The update addresses the vulnerabili
nvd
CVE-2020-1159P3HIGHCVSS 7.8v1903v1909+1 more2020-09-11
CVE-2020-1159 [HIGH] CVE-2020-1159: <p>An elevation of privilege vulnerability exists in the way that the StartTileData.dll handles file
An elevation of privilege vulnerability exists in the way that the StartTileData.dll handles file creation in protected locations. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update add
nvd
CVE-2022-22043P3HIGHCVSS 7.8v20h2v21h1+3 more2022-07-12
CVE-2022-22043 [HIGH] CVE-2022-22043: Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-23421P3HIGHCVSS 7.8fixed in 10.0.10240.198052023-03-14
CVE-2023-23421 [HIGH] CWE-416 CVE-2023-23421: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-21885P3HIGHCVSS 7.8v20h2v21h1+4 more2022-01-11
CVE-2022-21885 [HIGH] CVE-2022-21885: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2022-21914P3HIGHCVSS 7.8v20h2v21h1+4 more2022-01-11
CVE-2022-21914 [HIGH] CVE-2022-21914: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2022-23293P3HIGHCVSS 7.8v20h2v21h1+4 more2022-03-09
CVE-2022-23293 [HIGH] CVE-2022-23293: Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-21869P3HIGHCVSS 7.8v20h2v21h1+3 more2022-01-11
CVE-2022-21869 [HIGH] CVE-2022-21869: Clipboard User Service Elevation of Privilege Vulnerability
Clipboard User Service Elevation of Privilege Vulnerability
nvd
CVE-2022-30132P3HIGHCVSS 7.8v20h2v21h1+2 more2022-06-15
CVE-2022-30132 [HIGH] CVE-2022-30132: Windows Container Manager Service Elevation of Privilege Vulnerability
Windows Container Manager Service Elevation of Privilege Vulnerability
nvd
CVE-2022-22001P3HIGHCVSS 7.8v20h2v21h1+4 more2022-02-09
CVE-2022-22001 [HIGH] CVE-2022-22001: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2021-26890P3HIGHCVSS 7.8v20h2v1809+2 more2021-03-11
CVE-2021-26890 [HIGH] CVE-2021-26890: Application Virtualization Remote Code Execution Vulnerability
Application Virtualization Remote Code Execution Vulnerability
nvd
CVE-2022-29103P3HIGHCVSS 7.8v20h2v21h1+4 more2022-05-10
CVE-2022-29103 [HIGH] CVE-2022-29103: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2023-23422P3HIGHCVSS 7.8fixed in 10.0.10240.198052023-03-14
CVE-2023-23422 [HIGH] CVE-2023-23422: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd