cbcvebase.

Microsoft Windows 10 1607 vulnerabilities

1,753 known vulnerabilities affecting microsoft/windows_10_1607.

Total CVEs
1,753
CISA KEV
87
actively exploited
Public exploits
53
Exploited in wild
98
Severity breakdown
CRITICAL61HIGH1246MEDIUM437LOW9

Vulnerabilities

Page 61 of 88
CVE-2026-54132P3MEDIUMCVSS 6.8fixed in 10.0.14393.93392026-07-14
CVE-2026-54132 [MEDIUM] CWE-122 CVE-2026-54132: Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges w Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.
nvd
CVE-2026-50668P3MEDIUMCVSS 6.8fixed in 10.0.14393.93392026-07-14
CVE-2026-50668 [MEDIUM] CWE-122 CVE-2026-50668: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges wit Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.
nvd
CVE-2025-58729P3MEDIUMCVSS 6.5fixed in 10.0.14393.85192025-10-14
CVE-2025-58729 [MEDIUM] CWE-1287 CVE-2025-58729: Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an auth Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
nvd
CVE-2023-38159P3HIGHCVSS 7.0fixed in 10.0.14393.63512023-10-10
CVE-2023-38159 [HIGH] CWE-591 CVE-2023-38159: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2025-58739P3MEDIUMCVSS 6.5fixed in 10.0.14393.85192025-10-14
CVE-2025-58739 [MEDIUM] CWE-200 CVE-2025-58739: Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauth Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2026-50366P3MEDIUMCVSS 6.5fixed in 10.0.14393.93392026-07-14
CVE-2026-50366 [MEDIUM] CWE-476 CVE-2026-50366: Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny s Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.
nvd
CVE-2026-57976P3MEDIUMCVSS 6.5fixed in 10.0.14393.93392026-07-14
CVE-2026-57976 [MEDIUM] CWE-476 CVE-2026-57976: Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny s Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.
nvd
CVE-2026-55003P3MEDIUMCVSS 6.5fixed in 10.0.14393.93392026-07-14
CVE-2026-55003 [MEDIUM] CWE-908 CVE-2026-55003: Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2026-58546P3MEDIUMCVSS 6.5fixed in 10.0.14393.93392026-07-14
CVE-2026-58546 [MEDIUM] CWE-908 CVE-2026-58546: Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2024-49096P3HIGHCVSS 7.5fixed in 10.0.14393.76062024-12-12
CVE-2024-49096 [HIGH] CWE-400 CVE-2024-49096: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21230P3HIGHCVSS 7.5fixed in 10.0.14393.76992025-01-14
CVE-2025-21230 [HIGH] CWE-20 CVE-2025-21230: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21251P3HIGHCVSS 7.5fixed in 10.0.14393.76992025-01-14
CVE-2025-21251 [HIGH] CWE-400 CVE-2025-21251: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2024-38132P3HIGHCVSS 7.5fixed in 10.0.14393.72592024-08-13
CVE-2024-38132 [HIGH] CWE-125 CVE-2024-38132: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2025-21289P3HIGHCVSS 7.5fixed in 10.0.14393.76992025-01-14
CVE-2025-21289 [HIGH] CWE-400 CVE-2025-21289: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21290P3HIGHCVSS 7.5fixed in 10.0.14393.76992025-01-14
CVE-2025-21290 [HIGH] CWE-400 CVE-2025-21290: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21270P3HIGHCVSS 7.5fixed in 10.0.14393.76992025-01-14
CVE-2025-21270 [HIGH] CWE-400 CVE-2025-21270: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2024-43565P3HIGHCVSS 7.5fixed in 10.0.14393.74282024-10-08
CVE-2024-43565 [HIGH] CWE-125 CVE-2024-43565: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2024-43562P3HIGHCVSS 7.5fixed in 10.0.14393.74282024-10-08
CVE-2024-43562 [HIGH] CWE-125 CVE-2024-43562: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2024-38091P3HIGHCVSS 7.5fixed in 10.0.14393.71592024-07-09
CVE-2024-38091 [HIGH] CWE-166 CVE-2024-38091: Microsoft WS-Discovery Denial of Service Vulnerability Microsoft WS-Discovery Denial of Service Vulnerability
nvd
CVE-2024-21343P3HIGHCVSS 7.5fixed in 10.0.14393.67092024-02-13
CVE-2024-21343 [HIGH] CWE-125 CVE-2024-21343: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd