Microsoft Windows 10 21H2 vulnerabilities
1,584 known vulnerabilities affecting microsoft/windows_10_21h2.
Total CVEs
1,584
CISA KEV
86
actively exploited
Public exploits
31
Exploited in wild
55
Severity breakdown
CRITICAL39HIGH1118MEDIUM421LOW6
Vulnerabilities
Page 53 of 80
CVE-2024-26210HIGHCVSS 8.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26210 [HIGH] CWE-122 CVE-2024-26210: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-26237HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26237 [HIGH] CWE-416 CVE-2024-26237: Windows Defender Credential Guard Elevation of Privilege Vulnerability
Windows Defender Credential Guard Elevation of Privilege Vulnerability
nvd
CVE-2024-20693HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-20693 [HIGH] CWE-426 CVE-2024-20693: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26208HIGHCVSS 7.2fixed in 10.0.19044.42912024-04-09
CVE-2024-26208 [HIGH] CWE-191 CVE-2024-26208: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-26228HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26228 [HIGH] CWE-310 CVE-2024-26228: Windows Cryptographic Services Security Feature Bypass Vulnerability
Windows Cryptographic Services Security Feature Bypass Vulnerability
nvd
CVE-2024-26214HIGHCVSS 8.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26214 [HIGH] CWE-122 CVE-2024-26214: Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability
Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-29988HIGHCVSS 8.8KEVfixed in 10.0.19044.42912024-04-09
CVE-2024-29988 [HIGH] CWE-693 CVE-2024-29988: SmartScreen Prompt Security Feature Bypass Vulnerability
SmartScreen Prompt Security Feature Bypass Vulnerability
nvd
CVE-2024-26205HIGHCVSS 8.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26205 [HIGH] CWE-122 CVE-2024-26205: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-29052HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-29052 [HIGH] CWE-269 CVE-2024-29052: Windows Storage Elevation of Privilege Vulnerability
Windows Storage Elevation of Privilege Vulnerability
nvd
CVE-2024-26239HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26239 [HIGH] CWE-122 CVE-2024-26239: Windows Telephony Server Elevation of Privilege Vulnerability
Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2024-29050HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-29050 [HIGH] CWE-197 CVE-2024-29050: Windows Cryptographic Services Remote Code Execution Vulnerability
Windows Cryptographic Services Remote Code Execution Vulnerability
nvd
CVE-2024-26254HIGHCVSS 7.5fixed in 10.0.19044.42912024-04-09
CVE-2024-26254 [HIGH] CWE-822 CVE-2024-26254: Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability
Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability
nvd
CVE-2024-21447HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-21447 [HIGH] CWE-59 CVE-2024-21447: Windows Authentication Elevation of Privilege Vulnerability
Windows Authentication Elevation of Privilege Vulnerability
nvd
CVE-2024-26158HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26158 [HIGH] CWE-59 CVE-2024-26158: Microsoft Install Service Elevation of Privilege Vulnerability
Microsoft Install Service Elevation of Privilege Vulnerability
nvd
CVE-2024-20678HIGHCVSS 8.8fixed in 10.0.19044.42912024-04-09
CVE-2024-20678 [HIGH] CWE-843 CVE-2024-20678: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2024-26244HIGHCVSS 8.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26244 [HIGH] CWE-191 CVE-2024-26244: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-26243HIGHCVSS 7.0fixed in 10.0.19044.42912024-04-09
CVE-2024-26243 [HIGH] CWE-126 CVE-2024-26243: Windows USB Print Driver Elevation of Privilege Vulnerability
Windows USB Print Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-26248HIGHCVSS 7.5fixed in 10.0.19044.42912024-04-09
CVE-2024-26248 [HIGH] CWE-303 CVE-2024-26248: Windows Kerberos Elevation of Privilege Vulnerability
Windows Kerberos Elevation of Privilege Vulnerability
nvd
CVE-2024-26218HIGHCVSS 7.8fixed in 10.0.19044.42912024-04-09
CVE-2024-26218 [HIGH] CWE-367 CVE-2024-26218: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26242HIGHCVSS 7.0fixed in 10.0.19044.42912024-04-09
CVE-2024-26242 [HIGH] CWE-591 CVE-2024-26242: Windows Telephony Server Elevation of Privilege Vulnerability
Windows Telephony Server Elevation of Privilege Vulnerability
nvd