Microsoft Windows 10 vulnerabilities
2,804 known vulnerabilities affecting microsoft/windows_10.
Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27
Vulnerabilities
Page 76 of 141
CVE-2020-17012P3HIGHCVSS 7.8v1803v1903+1 more2020-11-11
CVE-2020-17012 [HIGH] CVE-2020-17012: Windows Bind Filter Driver Elevation of Privilege Vulnerability
Windows Bind Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2020-0944P3HIGHCVSS 7.8v1709v1803+3 more2020-04-15
CVE-2020-0944 [HIGH] CVE-2020-0944: An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0942, CVE-2020-1029.
nvd
CVE-2022-26786P3HIGHCVSS 7.8v20h2v21h1+4 more2022-04-15
CVE-2022-26786 [HIGH] CVE-2022-26786: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-27086P3HIGHCVSS 7.8v20h2v1803+3 more2021-04-13
CVE-2021-27086 [HIGH] CWE-863 CVE-2021-27086: Windows Services and Controller App Elevation of Privilege Vulnerability
Windows Services and Controller App Elevation of Privilege Vulnerability
nvd
CVE-2021-1727P3HIGHCVSS 7.8v20h2v1607+4 more2021-02-25
CVE-2021-1727 [HIGH] CWE-269 CVE-2021-1727: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-0808P3HIGHCVSS 7.8v1709v1803+3 more2020-03-12
CVE-2020-0808 [HIGH] CWE-20 CVE-2020-0808: An elevation of privilege vulnerability exists in the way the Provisioning Runtime validates certain
An elevation of privilege vulnerability exists in the way the Provisioning Runtime validates certain file operations, aka 'Provisioning Runtime Elevation of Privilege Vulnerability'.
nvd
CVE-2022-26791P3HIGHCVSS 7.8v20h2v21h1+1 more2022-04-15
CVE-2022-26791 [HIGH] CVE-2022-26791: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26789P3HIGHCVSS 7.8v20h2v21h1+3 more2022-04-15
CVE-2022-26789 [HIGH] CVE-2022-26789: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2019-1380P3HIGHCVSS 7.8v1607v1709+3 more2019-11-12
CVE-2019-1380 [HIGH] CWE-367 CVE-2019-1380: A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka '
A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0620P3HIGHCVSS 7.8v1607v1709+4 more2020-01-14
CVE-2020-0620 [HIGH] CVE-2020-0620: An elevation of privilege vulnerability exists when Microsoft Cryptographic Services improperly hand
An elevation of privilege vulnerability exists when Microsoft Cryptographic Services improperly handles files, aka 'Microsoft Cryptographic Services Elevation of Privilege Vulnerability'.
nvd
CVE-2021-26875P3HIGHCVSS 7.8v20h2v1607+4 more2021-03-11
CVE-2021-26875 [HIGH] CVE-2021-26875: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2021-1642P3HIGHCVSS 7.8v20h2v1607+4 more2021-01-12
CVE-2021-1642 [HIGH] CWE-269 CVE-2021-1642: Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
nvd
CVE-2021-26878P3HIGHCVSS 7.8v20h2v1607+4 more2021-03-11
CVE-2021-26878 [HIGH] CVE-2021-26878: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-1490P3HIGHCVSS 7.8v1607v1709+5 more2020-08-17
CVE-2020-1490 [HIGH] CVE-2020-1490: An elevation of privilege vulnerability exists when the Storage Service improperly handles file oper
An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges on the victim system.
To exploit the vulnerability, an attacker would first have to gain execution on the victim system, then run a specially crafted application.
The
nvd
CVE-2020-1484P3HIGHCVSS 7.8v1607v1709+5 more2020-08-17
CVE-2020-1484 [HIGH] CVE-2020-1484: An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly hand
An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the
nvd
CVE-2020-1363P3HIGHCVSS 7.8v1709v1803+4 more2020-07-14
CVE-2020-1363 [HIGH] CVE-2020-1363: An elevation of privilege vulnerability exists when the Windows Picker Platform improperly handles m
An elevation of privilege vulnerability exists when the Windows Picker Platform improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Picker Platform Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1352P3HIGHCVSS 7.8v1607v1709+5 more2020-07-14
CVE-2020-1352 [HIGH] CVE-2020-1352: An elevation of privilege vulnerability exists when the Windows USO Core Worker improperly handles m
An elevation of privilege vulnerability exists when the Windows USO Core Worker improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows USO Core Worker Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1371P3HIGHCVSS 7.8v1607v1709+5 more2020-07-14
CVE-2020-1371 [HIGH] CVE-2020-1371: An elevation of privilege vulnerability exists when the Windows Event Logging Service improperly han
An elevation of privilege vulnerability exists when the Windows Event Logging Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Event Logging Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1365.
nvd
CVE-2020-1078P3HIGHCVSS 7.8v1607v1709+4 more2020-05-21
CVE-2020-1078 [HIGH] CVE-2020-1078: An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'.
nvd
CVE-2021-26874P3HIGHCVSS 7.8v20h2v1809+2 more2021-03-11
CVE-2021-26874 [HIGH] CVE-2021-26874: Windows Overlay Filter Elevation of Privilege Vulnerability
Windows Overlay Filter Elevation of Privilege Vulnerability
nvd