cbcvebase.

Microsoft Windows 10 vulnerabilities

2,804 known vulnerabilities affecting microsoft/windows_10.

Total CVEs
2,804
CISA KEV
7
actively exploited
Public exploits
226
Exploited in wild
51
Severity breakdown
CRITICAL68HIGH1906MEDIUM803LOW27

Vulnerabilities

Page 86 of 141
CVE-2019-0682P3HIGHCVSS 7.8v1703v1709+2 more2019-04-09
CVE-2019-0682 [HIGH] CWE-190 CVE-2019-0682: An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for L An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0689, CVE-2019-0692, CVE-2019-0693, CVE-2019-0694.
nvd
CVE-2019-0689P3HIGHCVSS 7.8v1709v1803+1 more2019-04-09
CVE-2019-0689 [HIGH] CVE-2019-0689: An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for L An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0682, CVE-2019-0692, CVE-2019-0693, CVE-2019-0694.
nvd
CVE-2019-0692P3HIGHCVSS 7.8v1709v1803+1 more2019-04-09
CVE-2019-0692 [HIGH] CVE-2019-0692: An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for L An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0682, CVE-2019-0689, CVE-2019-0693, CVE-2019-0694.
nvd
CVE-2019-0694P3HIGHCVSS 7.8v1709v1803+1 more2019-04-09
CVE-2019-0694 [HIGH] CVE-2019-0694: An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for L An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0682, CVE-2019-0689, CVE-2019-0692, CVE-2019-0693.
nvd
CVE-2020-1491P3HIGHCVSS 7.8v1607v1709+5 more2020-09-11
CVE-2020-1491 [HIGH] CVE-2020-1491: <p>An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Ser An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addre
nvd
CVE-2020-1524P3HIGHCVSS 7.8v1803v1809+3 more2020-08-17
CVE-2020-1524 [HIGH] CVE-2020-1524: An elevation of privilege vulnerability exists when the Windows Speech Shell Components improperly h An elevation of privilege vulnerability exists when the Windows Speech Shell Components improperly handle memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how t
nvd
CVE-2020-0985P3HIGHCVSS 7.8v1607v1709+4 more2020-04-15
CVE-2020-0985 [HIGH] CVE-2020-0985: An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handl An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0996.
nvd
CVE-2020-1000P3HIGHCVSS 7.8v1607v1709+4 more2020-04-15
CVE-2020-1000 [HIGH] CVE-2020-1000: An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0913, CVE-2020-1003, CVE-2020-1027.
nvd
CVE-2020-1082P3HIGHCVSS 7.8v1607v1709+4 more2020-05-21
CVE-2020-1082 [HIGH] CVE-2020-1082: An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1021, CVE-2020-1088.
nvd
CVE-2020-1393P3HIGHCVSS 7.8v1607v1709+5 more2020-07-14
CVE-2020-1393 [HIGH] CVE-2020-1393: An elevation of privilege vulnerability exists when the Windows Diagnostics Hub Standard Collector S An elevation of privilege vulnerability exists when the Windows Diagnostics Hub Standard Collector Service fails to properly sanitize input, leading to an unsecure library-loading behavior, aka 'Windows Diagnostics Hub Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1418.
nvd
CVE-2020-0685P3HIGHCVSS 7.8v1709v1803+3 more2020-02-11
CVE-2020-0685 [HIGH] CVE-2020-0685: An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Server Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1323P3HIGHCVSS 7.8v1809v19032019-10-10
CVE-2019-1323 [HIGH] CVE-2019-1323: An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does n An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does not properly handle privileges, aka 'Microsoft Windows Update Client Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1336.
nvd
CVE-2020-0845P3HIGHCVSS 7.8v1607v1709+4 more2020-03-12
CVE-2020-0845 [HIGH] CVE-2020-0845: An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'Windows Network Connections Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0778, CVE-2020-0802, CVE-2020-0803, CVE-2020-0804.
nvd
CVE-2020-0858P3HIGHCVSS 7.8v1607v1709+4 more2020-03-12
CVE-2020-0858 [HIGH] CVE-2020-0858: An elevation of privilege vulnerability exists when the &quot;Public Account Pictures&quot; folder i An elevation of privilege vulnerability exists when the "Public Account Pictures" folder improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0776.
nvd
CVE-2023-21701P3HIGHCVSS 7.5fixed in 10.0.10240.197472023-02-14
CVE-2023-21701 [HIGH] CWE-126 CVE-2023-21701: Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability
nvd
CVE-2019-1321P3HIGHCVSS 7.8v1703v1709+3 more2019-10-10
CVE-2019-1321 [HIGH] CVE-2019-1321: An elevation of privilege vulnerability exists when Windows CloudStore improperly handles file Discr An elevation of privilege vulnerability exists when Windows CloudStore improperly handles file Discretionary Access Control List (DACL), aka 'Microsoft Windows CloudStore Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1336P3HIGHCVSS 7.8v1809v19032019-10-10
CVE-2019-1336 [HIGH] CVE-2019-1336: An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does n An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does not properly handle privileges, aka 'Microsoft Windows Update Client Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1323.
nvd
CVE-2020-1246P3HIGHCVSS 7.8v1607v1709+5 more2020-06-09
CVE-2020-1246 [HIGH] CVE-2020-1246: An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0986, CVE-2020-1237, CVE-2020-1262, CVE-2020-1264, CVE-2020-1266, CVE-2020-1269, CVE-2020-1273, CVE-2020-1274, CVE-2020-1275, CVE-2020-1276, CVE-2020-130
nvd
CVE-2020-1316P3HIGHCVSS 7.8v1607v1709+5 more2020-06-09
CVE-2020-1316 [HIGH] CVE-2020-1316: An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0986, CVE-2020-1237, CVE-2020-1246, CVE-2020-1262, CVE-2020-1264, CVE-2020-1266, CVE-2020-1269, CVE-2020-1273, CVE-2020-1274, CVE-2020-1275, CVE-2020-127
nvd
CVE-2020-0956P3HIGHCVSS 7.8v1607v1709+4 more2020-04-15
CVE-2020-0956 [HIGH] CVE-2020-0956: An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0957, CVE-2020-0958.
nvd
Microsoft Windows 10 vulnerabilities | cvebase