Microsoft Windows 10 21H2 vulnerabilities

1,584 known vulnerabilities affecting microsoft/windows_10_21h2.

Total CVEs
1,584
CISA KEV
86
actively exploited
Public exploits
31
Exploited in wild
55
Severity breakdown
CRITICAL39HIGH1118MEDIUM421LOW6

Vulnerabilities

Page 35 of 80
CVE-2025-21333HIGHCVSS 7.8KEVPoCfixed in 10.0.19044.53712025-01-14
CVE-2025-21333 [HIGH] CWE-122 CVE-2025-21333: Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
nvd
CVE-2025-21273HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21273 [HIGH] CWE-122 CVE-2025-21273: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21241HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21241 [HIGH] CWE-122 CVE-2025-21241: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21251HIGHCVSS 7.5fixed in 10.0.19044.53712025-01-14
CVE-2025-21251 [HIGH] CWE-400 CVE-2025-21251: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21299HIGHCVSS 7.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21299 [HIGH] CWE-922 CVE-2025-21299: Windows Kerberos Security Feature Bypass Vulnerability Windows Kerberos Security Feature Bypass Vulnerability
nvd
CVE-2025-21330HIGHCVSS 7.5fixed in 10.0.19044.53712025-01-14
CVE-2025-21330 [HIGH] CWE-400 CVE-2025-21330: Windows Remote Desktop Services Denial of Service Vulnerability Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2025-21220HIGHCVSS 7.5fixed in 10.0.19044.53712025-01-14
CVE-2025-21220 [HIGH] CWE-908 CVE-2025-21220: Microsoft Message Queuing Information Disclosure Vulnerability Microsoft Message Queuing Information Disclosure Vulnerability
nvd
CVE-2025-21331HIGHCVSS 7.3fixed in 10.0.19044.53712025-01-14
CVE-2025-21331 [HIGH] CWE-59 CVE-2025-21331: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2025-21282HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21282 [HIGH] CWE-122 CVE-2025-21282: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21413HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21413 [HIGH] CWE-122 CVE-2025-21413: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21275HIGHCVSS 7.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21275 [HIGH] CWE-285 CVE-2025-21275: Windows App Package Installer Elevation of Privilege Vulnerability Windows App Package Installer Elevation of Privilege Vulnerability
nvd
CVE-2025-21236HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21236 [HIGH] CWE-122 CVE-2025-21236: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21290HIGHCVSS 7.5fixed in 10.0.19044.53712025-01-14
CVE-2025-21290 [HIGH] CWE-400 CVE-2025-21290: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21270HIGHCVSS 7.5fixed in 10.0.19044.53712025-01-14
CVE-2025-21270 [HIGH] CWE-400 CVE-2025-21270: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21245HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21245 [HIGH] CWE-122 CVE-2025-21245: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21250HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21250 [HIGH] CWE-122 CVE-2025-21250: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21335HIGHCVSS 7.8KEVfixed in 10.0.19044.53712025-01-14
CVE-2025-21335 [HIGH] CWE-416 CVE-2025-21335: Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
nvd
CVE-2025-21207HIGHCVSS 7.5fixed in 10.0.19044.53712025-01-14
CVE-2025-21207 [HIGH] CWE-400 CVE-2025-21207: Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability
nvd
CVE-2025-21243HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21243 [HIGH] CWE-190 CVE-2025-21243: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21238HIGHCVSS 8.8fixed in 10.0.19044.53712025-01-14
CVE-2025-21238 [HIGH] CWE-122 CVE-2025-21238: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd