cbcvebase.

Microsoft Windows 10 Version 1607 vulnerabilities

3,019 known vulnerabilities affecting microsoft/windows_10_version_1607.

Total CVEs
3,019
CISA KEV
102
actively exploited
Public exploits
82
Exploited in wild
133
Severity breakdown
CRITICAL95HIGH2175MEDIUM737LOW12

Vulnerabilities

Page 16 of 151
CVE-2024-20678P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.68972024-04-09
CVE-2024-20678 [HIGH] CWE-843 CVE-2024-20678: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2022-29137P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.51252022-05-10
CVE-2022-29137 [HIGH] CVE-2022-29137: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2022-22014P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.51252022-05-10
CVE-2022-22014 [HIGH] CVE-2022-22014: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2022-22013P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.51252022-05-10
CVE-2022-22013 [HIGH] CVE-2022-22013: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2023-36423P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.64522023-11-14
CVE-2023-36423 [HIGH] CWE-122 CVE-2023-36423: Microsoft Remote Registry Service Remote Code Execution Vulnerability Microsoft Remote Registry Service Remote Code Execution Vulnerability
nvd
CVE-2026-20840P3HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.87832026-01-13
CVE-2026-20840 [HIGH] CWE-122 CVE-2026-20840: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
nvd
CVE-2025-59295P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.85192025-10-14
CVE-2025-59295 [HIGH] CWE-122 CVE-2025-59295: Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.
nvd
CVE-2025-24051P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.78762025-03-11
CVE-2025-24051 [HIGH] CWE-122 CVE-2025-24051: Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
nvd
CVE-2023-35641P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.65292023-12-12
CVE-2023-35641 [HIGH] CWE-682 CVE-2023-35641: Internet Connection Sharing (ICS) Remote Code Execution Vulnerability Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
nvd
CVE-2026-57094P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.93392026-07-14
CVE-2026-57094 [HIGH] CWE-122 CVE-2026-57094: Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-50500P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.93392026-07-14
CVE-2026-50500 [HIGH] CWE-416 CVE-2026-50500: Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a networ Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a network.
nvd
CVE-2026-25188P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.89572026-03-10
CVE-2026-25188 [HIGH] CWE-122 CVE-2026-25188: Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to elevate p Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to elevate privileges over an adjacent network.
nvd
CVE-2021-31962P3CRITICALCVSS 9.8≥ 10.0.0, < 10.0.14393.44672021-06-08
CVE-2021-31962 [CRITICAL] CVE-2021-31962: Kerberos AppContainer Security Feature Bypass Vulnerability Kerberos AppContainer Security Feature Bypass Vulnerability
nvd
CVE-2023-35630P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.65292023-12-12
CVE-2023-35630 [HIGH] CWE-122 CVE-2023-35630: Internet Connection Sharing (ICS) Remote Code Execution Vulnerability Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
nvd
CVE-2026-50508P3HIGHCVSS 7.5≥ 10.0.14393.0, < 10.0.14393.92342026-06-09
CVE-2026-50508 [HIGH] CWE-200 CVE-2026-50508: Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized at Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2026-33827P3HIGHCVSS 8.1≥ 10.0.14393.0, < 10.0.14393.90602026-04-14
CVE-2026-33827 [HIGH] CWE-362 CVE-2026-33827: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
nvd
CVE-2024-26230P3HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.68972024-04-09
CVE-2024-26230 [HIGH] CWE-416 CVE-2024-26230: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2025-21285P3HIGHCVSS 7.5≥ 10.0.14393.0, < 10.0.14393.76992025-01-14
CVE-2025-21285 [HIGH] CWE-476 CVE-2025-21285: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2021-28445P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28445 [HIGH] CVE-2021-28445: Windows Network File System Remote Code Execution Vulnerability Windows Network File System Remote Code Execution Vulnerability
nvd
CVE-2025-21371P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.77852025-02-11
CVE-2025-21371 [HIGH] CWE-122 CVE-2025-21371: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd