Microsoft Windows 10 Version 1607 vulnerabilities
3,019 known vulnerabilities affecting microsoft/windows_10_version_1607.
Total CVEs
3,019
CISA KEV
102
actively exploited
Public exploits
82
Exploited in wild
134
Severity breakdown
CRITICAL95HIGH2175MEDIUM737LOW12
Vulnerabilities
Page 119 of 151
CVE-2020-1510P4MEDIUMCVSS 5.5≥ 10.0.0, < publication2020-08-17
CVE-2020-1510 [MEDIUM] CWE-200 CVE-2020-1510: An information disclosure vulnerability exists when the win32k component improperly provides kernel
An information disclosure vulnerability exists when the win32k component improperly provides kernel information. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted appl
nvd
CVE-2026-40401P4HIGHCVSS 7.1≥ 10.0.14393.0, < 10.0.14393.91402026-05-12
CVE-2026-40401 [HIGH] CWE-476 CVE-2026-40401: Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally.
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally.
cvelistv5nvd
CVE-2022-35759P4MEDIUMCVSS 6.5≥ 10.0.14393.0, < 10.0.14393.52912023-05-31
CVE-2022-35759 [MEDIUM] CVE-2022-35759: Windows Local Security Authority (LSA) Denial of Service Vulnerability
Windows Local Security Authority (LSA) Denial of Service Vulnerability
nvd
CVE-2022-21960P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21960 [MEDIUM] CVE-2022-21960: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21959P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21959 [MEDIUM] CVE-2022-21959: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21892P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21892 [MEDIUM] CVE-2022-21892: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21958P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21958 [MEDIUM] CVE-2022-21958: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21961P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21961 [MEDIUM] CVE-2022-21961: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21962P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21962 [MEDIUM] CVE-2022-21962: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2024-43634P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43634 [MEDIUM] CWE-125 CVE-2024-43634: Windows USB Video Class System Driver Elevation of Privilege Vulnerability
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43449P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43449 [MEDIUM] CWE-125 CVE-2024-43449: Windows USB Video Class System Driver Elevation of Privilege Vulnerability
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43637P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43637 [MEDIUM] CWE-125 CVE-2024-43637: Windows USB Video Class System Driver Elevation of Privilege Vulnerability
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43638P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43638 [MEDIUM] CWE-125 CVE-2024-43638: Windows USB Video Class System Driver Elevation of Privilege Vulnerability
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43643P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43643 [MEDIUM] CWE-125 CVE-2024-43643: Windows USB Video Class System Driver Elevation of Privilege Vulnerability
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38223P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.72592024-08-13
CVE-2024-38223 [MEDIUM] CWE-284 CVE-2024-38223: Windows Initial Machine Configuration Elevation of Privilege Vulnerability
Windows Initial Machine Configuration Elevation of Privilege Vulnerability
nvd
CVE-2022-21963P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21963 [MEDIUM] CVE-2022-21963: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2025-24987P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.78762025-03-11
CVE-2025-24987 [MEDIUM] CWE-125 CVE-2025-24987: Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges w
Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attack.
nvd
CVE-2025-24988P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.78762025-03-11
CVE-2025-24988 [MEDIUM] CWE-125 CVE-2025-24988: Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges w
Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attack.
nvd
CVE-2025-49751P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.83302025-08-12
CVE-2025-49751 [MEDIUM] CWE-820 CVE-2025-49751: Missing synchronization in Windows Hyper-V allows an authorized attacker to deny service over an adj
Missing synchronization in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.
nvd
CVE-2025-47999P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.82462025-07-08
CVE-2025-47999 [MEDIUM] CWE-820 CVE-2025-47999: Missing synchronization in Windows Hyper-V allows an authorized attacker to deny service over an adj
Missing synchronization in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.
nvd