Microsoft Windows 10 21H1 vulnerabilities
71 known vulnerabilities affecting microsoft/windows_10_21h1.
Total CVEs
71
CISA KEV
36
actively exploited
Public exploits
18
Exploited in wild
36
Severity breakdown
CRITICAL2HIGH55MEDIUM14
Vulnerabilities
Page 2 of 4
CVE-2022-34713P1HIGHCVSS 7.8KEVfixed in 10.0.19043.18892022-08-09
CVE-2022-34713 [HIGH] CVE-2022-34713: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
nvd
CVE-2022-41128P1HIGHCVSS 8.8KEVfixed in 10.0.19043.22512022-11-09
CVE-2022-41128 [HIGH] CWE-787 CVE-2022-41128: Windows Scripting Languages Remote Code Execution Vulnerability
Windows Scripting Languages Remote Code Execution Vulnerability
nvd
CVE-2022-41073P1HIGHCVSS 7.8KEVRansomwarefixed in 10.0.19043.22512022-11-09
CVE-2022-41073 [HIGH] CWE-787 CVE-2022-41073: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-36948P1HIGHCVSS 7.8KEVfixed in 10.0.19043.11652021-08-12
CVE-2021-36948 [HIGH] CVE-2021-36948: Windows Update Medic Service Elevation of Privilege Vulnerability
Windows Update Medic Service Elevation of Privilege Vulnerability
nvd
CVE-2022-22718P1HIGHCVSS 7.8KEVfixed in 10.0.19043.15262022-02-09
CVE-2022-22718 [HIGH] CVE-2022-22718: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-22047P1HIGHCVSS 7.8KEVfixed in 10.0.19043.18262022-07-12
CVE-2022-22047 [HIGH] CWE-426 CVE-2022-22047: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-38028P1HIGHCVSS 7.8KEVfixed in 10.0.19043.21302022-10-11
CVE-2022-38028 [HIGH] CVE-2022-38028: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-41091P1MEDIUMCVSS 5.4KEVRansomwarefixed in 10.0.19043.22512022-11-09
CVE-2022-41091 [MEDIUM] CWE-863 CVE-2022-41091: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2021-33771P1HIGHCVSS 7.8KEVfixed in 10.0.19043.11102021-07-14
CVE-2021-33771 [HIGH] CVE-2021-33771: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-31979P1HIGHCVSS 7.8KEVfixed in 10.0.19043.11102021-07-14
CVE-2021-31979 [HIGH] CWE-119 CVE-2021-31979: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-41125P1HIGHCVSS 7.8KEVfixed in 10.0.19043.22512022-11-09
CVE-2022-41125 [HIGH] CWE-787 CVE-2022-41125: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2022-41033P1HIGHCVSS 7.8KEVfixed in 10.0.19043.21302022-10-11
CVE-2022-41033 [HIGH] CWE-843 CVE-2022-41033: Windows COM+ Event System Service Elevation of Privilege Vulnerability
Windows COM+ Event System Service Elevation of Privilege Vulnerability
nvd
CVE-2021-31199P1HIGHCVSS 7.8KEVfixed in 10.0.19043.10522021-06-08
CVE-2021-31199 [HIGH] CVE-2021-31199: Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
nvd
CVE-2021-31201P1HIGHCVSS 7.8KEVfixed in 10.0.19043.10522021-06-08
CVE-2021-31201 [HIGH] CVE-2021-31201: Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
nvd
CVE-2023-36584P2MEDIUMCVSS 5.4KEVfixed in 10.0.19041.35702023-10-10
CVE-2023-36584 [MEDIUM] CVE-2023-36584: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2022-41049P2MEDIUMCVSS 5.4KEVfixed in 10.0.19043.22512022-11-09
CVE-2022-41049 [MEDIUM] CVE-2022-41049: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2024-30080P2CRITICALCVSS 9.8fixed in 10.0.19043.45292024-06-11
CVE-2024-30080 [CRITICAL] CWE-416 CVE-2024-30080: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-21357P2HIGHCVSS 8.1fixed in 10.0.19044.40462024-02-13
CVE-2024-21357 [HIGH] CWE-843 CVE-2024-21357: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2022-35744P2CRITICALCVSS 9.8fixed in 10.0.19043.18892023-05-31
CVE-2022-35744 [CRITICAL] CVE-2022-35744: Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability
Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability
nvd
CVE-2024-21420P3HIGHCVSS 8.8fixed in 10.0.19044.40462024-02-13
CVE-2024-21420 [HIGH] CWE-190 CVE-2024-21420: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd