cbcvebase.

Microsoft Windows 10 vulnerabilities

2,804 known vulnerabilities affecting microsoft/windows_10.

Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27

Vulnerabilities

Page 75 of 141
CVE-2020-1511P3HIGHCVSS 7.8v1607v1709+5 more2020-08-17
CVE-2020-1511 [HIGH] CVE-2020-1511: An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could exploit this vulnerability by running a specially crafted application on the victim system. The security u
nvd
CVE-2022-24546P3HIGHCVSS 7.8v20h2v21h1+3 more2022-04-15
CVE-2022-24546 [HIGH] CVE-2022-24546: Windows DWM Core Library Elevation of Privilege Vulnerability Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-36913P3HIGHCVSS 7.5fixed in 10.0.10240.201072023-08-08
CVE-2023-36913 [HIGH] CWE-908 CVE-2023-36913: Microsoft Message Queuing Information Disclosure Vulnerability Microsoft Message Queuing Information Disclosure Vulnerability
nvd
CVE-2021-42277P3HIGHCVSS 7.8v20h2v21h1+4 more2021-11-10
CVE-2021-42277 [HIGH] CWE-269 CVE-2021-42277: Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
nvd
CVE-2020-1365P3HIGHCVSS 7.8v1607v1709+5 more2020-07-14
CVE-2020-1365 [HIGH] CVE-2020-1365: An elevation of privilege vulnerability exists when the Windows Event Logging Service improperly han An elevation of privilege vulnerability exists when the Windows Event Logging Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Event Logging Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1371.
nvd
CVE-2020-0793P3HIGHCVSS 7.8v1607v1709+4 more2020-03-12
CVE-2020-0793 [HIGH] CVE-2020-0793: An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service i An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly handles file operations, aka 'Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0747P3HIGHCVSS 7.8v1607v1709+3 more2020-02-11
CVE-2020-0747 [HIGH] CVE-2020-0747: An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly hand An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka 'Windows Data Sharing Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0659.
nvd
CVE-2020-0701P3HIGHCVSS 7.8v1709v1803+3 more2020-02-11
CVE-2020-0701 [HIGH] CVE-2020-0701: An elevation of privilege vulnerability exists in the way that the Windows Client License Service (C An elevation of privilege vulnerability exists in the way that the Windows Client License Service (ClipSVC) handles objects in memory, aka 'Windows Client License Service Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1415P3HIGHCVSS 7.8v1607v1709+3 more2019-11-12
CVE-2019-1415 [HIGH] CVE-2019-1415: An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1347P3HIGHCVSS 7.8v1709v1803+4 more2020-07-14
CVE-2020-1347 [HIGH] CVE-2020-1347: An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle f An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations, aka 'Windows Storage Services Elevation of Privilege Vulnerability'.
nvd
CVE-2022-26796P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26796 [HIGH] CVE-2022-26796: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26802P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26802 [HIGH] CVE-2022-26802: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26801P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26801 [HIGH] CVE-2022-26801: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26792P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26792 [HIGH] CVE-2022-26792: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26787P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26787 [HIGH] CVE-2022-26787: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-26898P3HIGHCVSS 7.8v20h2v1607+3 more2021-03-11
CVE-2021-26898 [HIGH] CVE-2021-26898: Windows Event Tracing Elevation of Privilege Vulnerability Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2020-1130P3HIGHCVSS 7.8v1607v1709+5 more2020-09-11
CVE-2020-1130 [HIGH] CVE-2020-1130: <p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improp An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles data operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could exploit this vulnerability by running a specially crafted application on the victim system. The update addresses the
nvd
CVE-2021-1649P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1649 [HIGH] CWE-269 CVE-2021-1649: Active Template Library Elevation of Privilege Vulnerability Active Template Library Elevation of Privilege Vulnerability
nvd
CVE-2021-1702P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1702 [HIGH] CWE-269 CVE-2021-1702: Windows Remote Procedure Call Runtime Elevation of Privilege Vulnerability Windows Remote Procedure Call Runtime Elevation of Privilege Vulnerability
nvd
CVE-2021-1709P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1709 [HIGH] CWE-269 CVE-2021-1709: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
Microsoft Windows 10 vulnerabilities | cvebase