Microsoft Windows 10 20H2 vulnerabilities

210 known vulnerabilities affecting microsoft/windows_10_20h2.

Total CVEs
210
CISA KEV
43
actively exploited
Public exploits
8
Exploited in wild
43
Severity breakdown
CRITICAL11HIGH156MEDIUM43

Vulnerabilities

Page 4 of 11
CVE-2023-24885HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-24885 [HIGH] CWE-843 CVE-2023-24885: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28275HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-28275 [HIGH] CWE-122 CVE-2023-28275: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-28216HIGHCVSS 7.0fixed in 10.0.19042.28462023-04-11
CVE-2023-28216 [HIGH] CVE-2023-28216: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2023-28219HIGHCVSS 8.1fixed in 10.0.19042.28462023-04-11
CVE-2023-28219 [HIGH] CWE-591 CVE-2023-28219: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-28224HIGHCVSS 7.1fixed in 10.0.19042.28462023-04-11
CVE-2023-28224 [HIGH] CWE-591 CVE-2023-28224: Windows Point-to-Point Protocol over Ethernet (PPPoE) Remote Code Execution Vulnerability Windows Point-to-Point Protocol over Ethernet (PPPoE) Remote Code Execution Vulnerability
nvd
CVE-2023-28297HIGHCVSS 8.8fixed in 10.0.19042.24862023-04-11
CVE-2023-28297 [HIGH] CWE-416 CVE-2023-28297: Windows Remote Procedure Call Service (RPCSS) Elevation of Privilege Vulnerability Windows Remote Procedure Call Service (RPCSS) Elevation of Privilege Vulnerability
nvd
CVE-2023-21727HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-21727 [HIGH] CWE-122 CVE-2023-21727: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-24887HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-24887 [HIGH] CWE-191 CVE-2023-24887: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28243HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-28243 [HIGH] CWE-843 CVE-2023-28243: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28241HIGHCVSS 7.5fixed in 10.0.19042.28462023-04-11
CVE-2023-28241 [HIGH] CVE-2023-28241: Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability
nvd
CVE-2023-24928HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-24928 [HIGH] CWE-122 CVE-2023-24928: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-24926HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-24926 [HIGH] CWE-122 CVE-2023-24926: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-24884HIGHCVSS 8.8fixed in 10.0.19042.28462023-04-11
CVE-2023-24884 [HIGH] CWE-681 CVE-2023-24884: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28274HIGHCVSS 7.8fixed in 10.0.19042.28462023-04-11
CVE-2023-28274 [HIGH] CWE-20 CVE-2023-28274: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-28237HIGHCVSS 7.8fixed in 10.0.19042.28462023-04-11
CVE-2023-28237 [HIGH] CWE-190 CVE-2023-28237: Windows Kernel Remote Code Execution Vulnerability Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2023-28235MEDIUMCVSS 6.8fixed in 10.0.19042.28462023-04-11
CVE-2023-28235 [MEDIUM] CVE-2023-28235: Windows Lock Screen Security Feature Bypass Vulnerability Windows Lock Screen Security Feature Bypass Vulnerability
nvd
CVE-2023-28276MEDIUMCVSS 4.4fixed in 10.0.19042.28462023-04-11
CVE-2023-28276 [MEDIUM] CVE-2023-28276: Windows Group Policy Security Feature Bypass Vulnerability Windows Group Policy Security Feature Bypass Vulnerability
nvd
CVE-2023-21729MEDIUMCVSS 5.3fixed in 10.0.19042.28462023-04-11
CVE-2023-21729 [MEDIUM] CWE-125 CVE-2023-21729: Remote Procedure Call Runtime Information Disclosure Vulnerability Remote Procedure Call Runtime Information Disclosure Vulnerability
nvd
CVE-2023-28271MEDIUMCVSS 5.5fixed in 10.0.19042.28462023-04-11
CVE-2023-28271 [MEDIUM] CWE-200 CVE-2023-28271: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2023-28226MEDIUMCVSS 5.3fixed in 10.0.19042.28462023-04-11
CVE-2023-28226 [MEDIUM] CWE-347 CVE-2023-28226: Windows Enroll Engine Security Feature Bypass Vulnerability Windows Enroll Engine Security Feature Bypass Vulnerability
nvd