cbcvebase.

Microsoft Windows 10 Version 1507 vulnerabilities

2,277 known vulnerabilities affecting microsoft/windows_10_version_1507.

Total CVEs
2,277
CISA KEV
89
actively exploited
Public exploits
75
Exploited in wild
118
Severity breakdown
CRITICAL69HIGH1630MEDIUM570LOW8

Vulnerabilities

Page 41 of 114
CVE-2025-54895P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.211282025-09-09
CVE-2025-54895 [HIGH] CWE-190 CVE-2025-54895: Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-38119P3HIGHCVSS 7.5≥ 10.0.10240.0, < 10.0.10240.207662024-09-10
CVE-2024-38119 [HIGH] CWE-416 CVE-2024-38119: Windows Network Address Translation (NAT) Remote Code Execution Vulnerability Windows Network Address Translation (NAT) Remote Code Execution Vulnerability
nvd
CVE-2024-30092P3HIGHCVSS 7.5≥ 10.0.10240.0, < 10.0.10240.207962024-10-08
CVE-2024-30092 [HIGH] CWE-20 CVE-2024-30092: Windows Hyper-V Remote Code Execution Vulnerability Windows Hyper-V Remote Code Execution Vulnerability
nvd
CVE-2023-24932MEDIUMCVSS 6.7Exploited≥ 10.0.10240.0, < 10.0.10240.210732023-05-09
CVE-2023-24932 [MEDIUM] Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2019-0906P3HIGHCVSS 7.8≥ 10.0.10240.0, < publication2019-06-12
CVE-2019-0906 [HIGH] CWE-129 CVE-2019-0906: A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by enticing a victim to open a specially crafted file. The update addresses the vul
nvd
CVE-2020-16967P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16967 [HIGH] CVE-2020-16967: <p>A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handle A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected system. An a
nvd
CVE-2020-1562P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1562 [HIGH] CVE-2020-1562: A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle ob A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code on a target system. To exploit the vulnerability, a user would have to open a specially crafted file. The security update addresses the vulnerability by correct
nvd
CVE-2023-35387P3HIGHCVSS 8.8≥ 10.0.10240.0, < 10.0.10240.201072023-08-08
CVE-2023-35387 [HIGH] CWE-191 CVE-2023-35387: Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability
nvd
CVE-2021-1668P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1668 [HIGH] CVE-2021-1668: Microsoft DTV-DVD Video Decoder Remote Code Execution Vulnerability Microsoft DTV-DVD Video Decoder Remote Code Execution Vulnerability
nvd
CVE-2021-26415P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-04-13
CVE-2021-26415 [HIGH] CWE-20 CVE-2021-26415: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2024-21371P3HIGHCVSS 7.0≥ 10.0.10240.0, < 10.0.10240.204692024-02-13
CVE-2024-21371 [HIGH] CWE-367 CVE-2024-21371: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-21878P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.191772022-01-11
CVE-2022-21878 [HIGH] CVE-2022-21878: Windows Geolocation Service Remote Code Execution Vulnerability Windows Geolocation Service Remote Code Execution Vulnerability
nvd
CVE-2022-29115P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.192972022-05-10
CVE-2022-29115 [HIGH] CVE-2022-29115: Windows Fax Service Remote Code Execution Vulnerability Windows Fax Service Remote Code Execution Vulnerability
nvd
CVE-2021-27089P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-04-13
CVE-2021-27089 [HIGH] CVE-2021-27089: Microsoft Internet Messaging API Remote Code Execution Vulnerability Microsoft Internet Messaging API Remote Code Execution Vulnerability
nvd
CVE-2022-21913P3HIGHCVSS 7.5≥ 10.0.10240.0, < 10.0.10240.191772022-01-11
CVE-2022-21913 [HIGH] CVE-2022-21913: Local Security Authority (Domain Policy) Remote Protocol Security Feature Bypass Local Security Authority (Domain Policy) Remote Protocol Security Feature Bypass
nvd
CVE-2022-22027P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.193602022-07-12
CVE-2022-22027 [HIGH] CVE-2022-22027: Windows Fax Service Remote Code Execution Vulnerability Windows Fax Service Remote Code Execution Vulnerability
nvd
CVE-2022-22024P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.193602022-07-12
CVE-2022-22024 [HIGH] CVE-2022-22024: Windows Fax Service Remote Code Execution Vulnerability Windows Fax Service Remote Code Execution Vulnerability
nvd
CVE-2024-38127P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.207512024-08-13
CVE-2024-38127 [HIGH] CWE-126 CVE-2024-38127: Windows Hyper-V Elevation of Privilege Vulnerability Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2025-27473P3HIGHCVSS 7.5≥ 10.0.10240.0, < 10.0.10240.209782025-04-08
CVE-2025-27473 [HIGH] CWE-400 CVE-2025-27473: Uncontrolled resource consumption in Windows HTTP.sys allows an unauthorized attacker to deny servic Uncontrolled resource consumption in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.
nvd
CVE-2022-30164P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.193252022-06-15
CVE-2022-30164 [HIGH] CVE-2022-30164: Kerberos AppContainer Security Feature Bypass Vulnerability Kerberos AppContainer Security Feature Bypass Vulnerability
nvd
Microsoft Windows 10 Version 1507 vulnerabilities | cvebase