Microsoft Windows 10 vulnerabilities
2,804 known vulnerabilities affecting microsoft/windows_10.
Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27
Vulnerabilities
Page 75 of 141
CVE-2020-1511P3HIGHCVSS 7.8v1607v1709+5 more2020-08-17
CVE-2020-1511 [HIGH] CVE-2020-1511: An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context.
An attacker could exploit this vulnerability by running a specially crafted application on the victim system.
The security u
nvd
CVE-2022-24546P3HIGHCVSS 7.8v20h2v21h1+3 more2022-04-15
CVE-2022-24546 [HIGH] CVE-2022-24546: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-36913P3HIGHCVSS 7.5fixed in 10.0.10240.201072023-08-08
CVE-2023-36913 [HIGH] CWE-908 CVE-2023-36913: Microsoft Message Queuing Information Disclosure Vulnerability
Microsoft Message Queuing Information Disclosure Vulnerability
nvd
CVE-2021-42277P3HIGHCVSS 7.8v20h2v21h1+4 more2021-11-10
CVE-2021-42277 [HIGH] CWE-269 CVE-2021-42277: Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
nvd
CVE-2020-1365P3HIGHCVSS 7.8v1607v1709+5 more2020-07-14
CVE-2020-1365 [HIGH] CVE-2020-1365: An elevation of privilege vulnerability exists when the Windows Event Logging Service improperly han
An elevation of privilege vulnerability exists when the Windows Event Logging Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Event Logging Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1371.
nvd
CVE-2020-0793P3HIGHCVSS 7.8v1607v1709+4 more2020-03-12
CVE-2020-0793 [HIGH] CVE-2020-0793: An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service i
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly handles file operations, aka 'Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0747P3HIGHCVSS 7.8v1607v1709+3 more2020-02-11
CVE-2020-0747 [HIGH] CVE-2020-0747: An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly hand
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka 'Windows Data Sharing Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0659.
nvd
CVE-2020-0701P3HIGHCVSS 7.8v1709v1803+3 more2020-02-11
CVE-2020-0701 [HIGH] CVE-2020-0701: An elevation of privilege vulnerability exists in the way that the Windows Client License Service (C
An elevation of privilege vulnerability exists in the way that the Windows Client License Service (ClipSVC) handles objects in memory, aka 'Windows Client License Service Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1415P3HIGHCVSS 7.8v1607v1709+3 more2019-11-12
CVE-2019-1415 [HIGH] CVE-2019-1415: An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1347P3HIGHCVSS 7.8v1709v1803+4 more2020-07-14
CVE-2020-1347 [HIGH] CVE-2020-1347: An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle f
An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations, aka 'Windows Storage Services Elevation of Privilege Vulnerability'.
nvd
CVE-2022-26796P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26796 [HIGH] CVE-2022-26796: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26802P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26802 [HIGH] CVE-2022-26802: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26801P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26801 [HIGH] CVE-2022-26801: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26792P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26792 [HIGH] CVE-2022-26792: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26787P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26787 [HIGH] CVE-2022-26787: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-26898P3HIGHCVSS 7.8v20h2v1607+3 more2021-03-11
CVE-2021-26898 [HIGH] CVE-2021-26898: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2020-1130P3HIGHCVSS 7.8v1607v1709+5 more2020-09-11
CVE-2020-1130 [HIGH] CVE-2020-1130: <p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improp
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles data operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context.
An attacker could exploit this vulnerability by running a specially crafted application on the victim system.
The update addresses the
nvd
CVE-2021-1649P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1649 [HIGH] CWE-269 CVE-2021-1649: Active Template Library Elevation of Privilege Vulnerability
Active Template Library Elevation of Privilege Vulnerability
nvd
CVE-2021-1702P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1702 [HIGH] CWE-269 CVE-2021-1702: Windows Remote Procedure Call Runtime Elevation of Privilege Vulnerability
Windows Remote Procedure Call Runtime Elevation of Privilege Vulnerability
nvd
CVE-2021-1709P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1709 [HIGH] CWE-269 CVE-2021-1709: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd