cbcvebase.

Microsoft Windows 10 Version 1507 vulnerabilities

2,277 known vulnerabilities affecting microsoft/windows_10_version_1507.

Total CVEs
2,277
CISA KEV
89
actively exploited
Public exploits
75
Exploited in wild
118
Severity breakdown
CRITICAL69HIGH1630MEDIUM570LOW8

Vulnerabilities

Page 53 of 114
CVE-2023-23422P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.198052023-03-14
CVE-2023-23422 [HIGH] CVE-2023-23422: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-23423P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.198052023-03-14
CVE-2023-23423 [HIGH] CVE-2023-23423: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-21281P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.208902025-01-14
CVE-2025-21281 [HIGH] CWE-416 CVE-2025-21281: Microsoft COM for Windows Elevation of Privilege Vulnerability Microsoft COM for Windows Elevation of Privilege Vulnerability
nvd
CVE-2023-28237P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.198692023-04-11
CVE-2023-28237 [HIGH] CWE-190 CVE-2023-28237: Windows Kernel Remote Code Execution Vulnerability Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2022-37990P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.195072022-10-11
CVE-2022-37990 [HIGH] CVE-2022-37990: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26239P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.205962024-04-09
CVE-2024-26239 [HIGH] CWE-122 CVE-2024-26239: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2025-21287P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.208902025-01-14
CVE-2025-21287 [HIGH] CWE-269 CVE-2025-21287: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2021-43223P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.10240.191452021-12-15
CVE-2021-43223 [HIGH] CVE-2021-43223: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2023-28272P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.198692023-04-11
CVE-2023-28272 [HIGH] CWE-191 CVE-2023-28272: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-21726P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.196852023-01-10
CVE-2023-21726 [HIGH] CWE-257 CVE-2023-21726: Windows Credential Manager User Interface Elevation of Privilege Vulnerability Windows Credential Manager User Interface Elevation of Privilege Vulnerability
nvd
CVE-2025-47973P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.210732025-07-08
CVE-2025-47973 [HIGH] CWE-126 CVE-2025-47973: Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges l Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2025-47971P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.210732025-07-08
CVE-2025-47971 [HIGH] CWE-126 CVE-2025-47971: Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges l Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2023-21754P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.196852023-01-10
CVE-2023-21754 [HIGH] CWE-190 CVE-2023-21754: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43563P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.207962024-10-08
CVE-2024-43563 [HIGH] CWE-591 CVE-2024-43563: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2023-35328P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.200482023-07-11
CVE-2023-35328 [HIGH] CWE-197 CVE-2023-35328: Windows Transaction Manager Elevation of Privilege Vulnerability Windows Transaction Manager Elevation of Privilege Vulnerability
nvd
CVE-2025-54894P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.211282025-09-09
CVE-2025-54894 [HIGH] CWE-122 CVE-2025-54894: Local Security Authority Subsystem Service Elevation of Privilege Vulnerability Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35299P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.200482023-07-11
CVE-2023-35299 [HIGH] CWE-125 CVE-2023-35299: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-30031P3HIGHCVSS 7.8≥ 10.0.10240.0, < 10.0.10240.206512024-05-14
CVE-2024-30031 [HIGH] CWE-416 CVE-2024-30031: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2025-29833P3HIGHCVSS 7.7≥ 10.0.10240.0, < 10.0.10240.210142025-05-13
CVE-2025-29833 [HIGH] CWE-367 CVE-2025-29833: Time-of-check time-of-use (toctou) race condition in Windows Virtual Machine Bus allows an unauthori Time-of-check time-of-use (toctou) race condition in Windows Virtual Machine Bus allows an unauthorized attacker to execute code locally.
nvd
CVE-2025-21197P3MEDIUMCVSS 6.5≥ 10.0.10240.0, < 10.0.10240.209782025-04-08
CVE-2025-21197 [MEDIUM] CWE-284 CVE-2025-21197: Improper access control in Windows NTFS allows an authorized attacker to disclose file path informat Improper access control in Windows NTFS allows an authorized attacker to disclose file path information under a folder where the attacker doesn't have permission to list content.
nvd
Microsoft Windows 10 Version 1507 vulnerabilities | cvebase