cbcvebase.

Microsoft Windows 10 1607 vulnerabilities

1,753 known vulnerabilities affecting microsoft/windows_10_1607.

Total CVEs
1,753
CISA KEV
87
actively exploited
Public exploits
53
Exploited in wild
98
Severity breakdown
CRITICAL61HIGH1246MEDIUM437LOW9

Vulnerabilities

Page 11 of 88
CVE-2025-64678P2HIGHCVSS 8.8fixed in 10.0.14393.85942025-12-09
CVE-2025-64678 [HIGH] CWE-122 CVE-2025-64678: Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-49178P3HIGHCVSS 8.8fixed in 10.0.14393.93392026-07-14
CVE-2026-49178 [HIGH] CWE-122 CVE-2026-49178: Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to exec Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.
nvd
CVE-2023-21708P2CRITICALCVSS 9.8fixed in 10.0.14393.57862023-03-14
CVE-2023-21708 [CRITICAL] CWE-191 CVE-2023-21708: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2026-42985P3HIGHCVSS 8.8fixed in 10.0.14393.92342026-06-09
CVE-2026-42985 [HIGH] CWE-416 CVE-2026-42985: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-50505P3HIGHCVSS 8.8fixed in 10.0.14393.93392026-07-14
CVE-2026-50505 [HIGH] CWE-416 CVE-2026-50505: Use after free in Windows Message Queuing allows an authorized attacker to execute code over a netwo Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.
nvd
CVE-2024-30078P3HIGHCVSS 8.8fixed in 10.0.14393.70702024-06-11
CVE-2024-30078 [HIGH] CWE-20 CVE-2024-30078: Windows Wi-Fi Driver Remote Code Execution Vulnerability Windows Wi-Fi Driver Remote Code Execution Vulnerability
nvd
CVE-2025-33070P3HIGHCVSS 8.1fixed in 10.0.14393.81482025-06-10
CVE-2025-33070 [HIGH] CWE-908 CVE-2025-33070: Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate privile Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate privileges over a network.
nvd
CVE-2024-38240P3CRITICALCVSS 9.8fixed in 10.0.14393.73362024-09-10
CVE-2024-38240 [CRITICAL] CWE-125 CVE-2024-38240: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2026-49798P3CRITICALCVSS 9.3fixed in 10.0.14393.93392026-07-14
CVE-2026-49798 [CRITICAL] CWE-416 CVE-2026-49798: Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally. Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2025-26645P3HIGHCVSS 8.8fixed in 10.0.14393.78762025-03-11
CVE-2025-26645 [HIGH] CWE-23 CVE-2025-26645: Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code ove Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-49164P3CRITICALCVSS 9.8fixed in 10.0.14393.93392026-07-14
CVE-2026-49164 [CRITICAL] CWE-122 CVE-2026-49164: Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to ex Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.
nvd
CVE-2024-38159P3CRITICALCVSS 9.1fixed in 10.0.14393.72592024-08-13
CVE-2024-38159 [CRITICAL] CWE-416 CVE-2024-38159: Windows Network Virtualization Remote Code Execution Vulnerability Windows Network Virtualization Remote Code Execution Vulnerability
nvd
CVE-2024-38160P3CRITICALCVSS 9.1fixed in 10.0.14393.72592024-08-13
CVE-2024-38160 [CRITICAL] CWE-122 CVE-2024-38160: Windows Network Virtualization Remote Code Execution Vulnerability Windows Network Virtualization Remote Code Execution Vulnerability
nvd
CVE-2025-53722P3HIGHCVSS 7.5fixed in 10.0.14393.83302025-08-12
CVE-2025-53722 [HIGH] CWE-400 CVE-2025-53722: Uncontrolled resource consumption in Windows Remote Desktop Services allows an unauthorized attacker Uncontrolled resource consumption in Windows Remote Desktop Services allows an unauthorized attacker to deny service over a network.
nvd
CVE-2026-50380P3CRITICALCVSS 9.6fixed in 10.0.14393.93392026-07-14
CVE-2026-50380 [CRITICAL] CWE-122 CVE-2026-50380: Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a ne Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.
nvd
CVE-2024-20678P3HIGHCVSS 8.8fixed in 10.0.14393.68972024-04-09
CVE-2024-20678 [HIGH] CWE-843 CVE-2024-20678: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-36423P3HIGHCVSS 8.8fixed in 10.0.14393.64522023-11-14
CVE-2023-36423 [HIGH] CWE-122 CVE-2023-36423: Microsoft Remote Registry Service Remote Code Execution Vulnerability Microsoft Remote Registry Service Remote Code Execution Vulnerability
nvd
CVE-2026-20840P3HIGHCVSS 7.8fixed in 10.0.14393.87832026-01-13
CVE-2026-20840 [HIGH] CWE-122 CVE-2026-20840: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
nvd
CVE-2025-59295P3HIGHCVSS 8.8fixed in 10.0.14393.85192025-10-14
CVE-2025-59295 [HIGH] CWE-122 CVE-2025-59295: Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.
nvd
CVE-2025-24051P3HIGHCVSS 8.8fixed in 10.0.14393.78762025-03-11
CVE-2025-24051 [HIGH] CWE-122 CVE-2025-24051: Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
nvd
Microsoft Windows 10 1607 vulnerabilities | cvebase