Microsoft Windows 10 Version 1507 vulnerabilities
2,277 known vulnerabilities affecting microsoft/windows_10_version_1507.
Total CVEs
2,277
CISA KEV
89
actively exploited
Public exploits
75
Exploited in wild
118
Severity breakdown
CRITICAL69HIGH1630MEDIUM570LOW8
Vulnerabilities
Page 2 of 114
CVE-2025-26633P1HIGHCVSS 7.0KEVPoCRansomware≥ 10.0.10240.0, < 10.0.10240.209472025-03-11
CVE-2025-26633 [HIGH] CWE-707 CVE-2025-26633: Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a
Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.
nvd
CVE-2021-41379P1HIGHCVSS 7.8KEVPoCRansomware≥ 10.0.0, < 10.0.10240.191192021-11-10
CVE-2021-41379 [HIGH] CWE-59 CVE-2021-41379: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2024-49138P1HIGHCVSS 7.8KEVPoC≥ 10.0.10240.0, < 10.0.10240.208572024-12-12
CVE-2024-49138 [HIGH] CWE-122 CVE-2024-49138: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-35250P1HIGHCVSS 7.8KEVPoC≥ 10.0.10240.0, < 10.0.10240.206802024-06-11
CVE-2024-35250 [HIGH] CWE-822 CVE-2024-35250: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38193P1HIGHCVSS 7.8KEVPoC≥ 10.0.10240.0, < 10.0.10240.207512024-08-13
CVE-2024-38193 [HIGH] CWE-416 CVE-2024-38193: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2022-24521P1HIGHCVSS 7.8KEVPoCRansomware≥ 10.0.10240.0, < 10.0.10240.192652022-04-15
CVE-2022-24521 [HIGH] CWE-787 CVE-2022-24521: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-30051P1HIGHCVSS 7.8KEVPoCRansomware≥ 10.0.10240.0, < 10.0.10240.206512024-05-14
CVE-2024-30051 [HIGH] CWE-122 CVE-2024-30051: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2021-34484P1HIGHCVSS 7.8KEVPoC≥ 10.0.0, < 10.0.10240.190222021-08-12
CVE-2021-34484 [HIGH] CVE-2021-34484: Windows User Profile Service Elevation of Privilege Vulnerability
Windows User Profile Service Elevation of Privilege Vulnerability
nvd
CVE-2021-36955P1HIGHCVSS 7.8KEVPoCRansomware≥ 10.0.0, < 10.0.10240.190602021-09-15
CVE-2021-36955 [HIGH] CVE-2021-36955: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-43226P1HIGHCVSS 7.8KEVPoCRansomware≥ 10.0.0, < 10.0.10240.191452021-12-15
CVE-2021-43226 [HIGH] CVE-2021-43226: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36424P1HIGHCVSS 7.8KEVPoC≥ 10.0.10240.0, < 10.0.10240.203082023-11-14
CVE-2023-36424 [HIGH] CWE-125 CVE-2023-36424: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2025-24990P1HIGHCVSS 7.8KEVPoC≥ 10.0.10240.0, < 10.0.10240.211612025-10-14
CVE-2025-24990 [HIGH] CWE-822 CVE-2025-24990: Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update.
Fax modem hardware dependent on this specific driver will no longer work on Window
nvd
CVE-2022-26904P1HIGHCVSS 7.0KEVPoC≥ 10.0.10240.0, < 10.0.10240.192652022-04-15
CVE-2022-26904 [HIGH] CWE-362 CVE-2022-26904: Windows User Profile Service Elevation of Privilege Vulnerability
Windows User Profile Service Elevation of Privilege Vulnerability
nvd
CVE-2022-21919P1HIGHCVSS 7.0KEVPoC≥ 10.0.10240.0, < 10.0.10240.191772022-01-11
CVE-2022-21919 [HIGH] CWE-59 CVE-2022-21919: Windows User Profile Service Elevation of Privilege Vulnerability
Windows User Profile Service Elevation of Privilege Vulnerability
nvd
CVE-2020-17087P1HIGHCVSS 7.8KEVPoC≥ 10.0.0, < publication2020-11-11
CVE-2020-17087 [HIGH] CWE-131 CVE-2020-17087: Windows Kernel Local Elevation of Privilege Vulnerability
Windows Kernel Local Elevation of Privilege Vulnerability
nvd
CVE-2023-28229P1HIGHCVSS 7.0KEVPoC≥ 10.0.10240.0, < 10.0.10240.198692023-04-11
CVE-2023-28229 [HIGH] CWE-591 CVE-2023-28229: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2021-33742P1HIGHCVSS 8.8KEV≥ 10.0.0, < 10.0.10240.189672021-06-08
CVE-2021-33742 [HIGH] CWE-787 CVE-2021-33742: Windows MSHTML Platform Remote Code Execution Vulnerability
Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2024-43572P1HIGHCVSS 7.8KEV≥ 10.0.10240.0, < 10.0.10240.207962024-10-08
CVE-2024-43572 [HIGH] CWE-707 CVE-2024-43572: Microsoft Management Console Remote Code Execution Vulnerability
Microsoft Management Console Remote Code Execution Vulnerability
nvd
CVE-2022-34713P1HIGHCVSS 7.8KEV≥ 10.0.10240.0, < 10.0.10240.193872022-08-09
CVE-2022-34713 [HIGH] CVE-2022-34713: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
nvd
CVE-2022-41128P1HIGHCVSS 8.8KEV≥ 10.0.10240.0, < 10.0.10240.195672022-11-09
CVE-2022-41128 [HIGH] CWE-787 CVE-2022-41128: Windows Scripting Languages Remote Code Execution Vulnerability
Windows Scripting Languages Remote Code Execution Vulnerability
nvd