cbcvebase.

Microsoft Windows 10 Version 1607 vulnerabilities

3,019 known vulnerabilities affecting microsoft/windows_10_version_1607.

Total CVEs
3,019
CISA KEV
102
actively exploited
Public exploits
82
Exploited in wild
133
Severity breakdown
CRITICAL95HIGH2175MEDIUM737LOW12

Vulnerabilities

Page 17 of 151
CVE-2021-24088P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-02-25
CVE-2021-24088 [HIGH] CVE-2021-24088: Windows Local Spooler Remote Code Execution Vulnerability Windows Local Spooler Remote Code Execution Vulnerability
nvd
CVE-2022-23294P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.50062022-03-09
CVE-2022-23294 [HIGH] CVE-2022-23294: Windows Event Tracing Remote Code Execution Vulnerability Windows Event Tracing Remote Code Execution Vulnerability
nvd
CVE-2026-24294P3HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.89572026-03-10
CVE-2026-24294 [HIGH] CWE-287 CVE-2026-24294: Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges lo Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-50177P3HIGHCVSS 8.1≥ 10.0.14393.0, < 10.0.14393.83302025-08-12
CVE-2025-50177 [HIGH] CWE-362 CVE-2025-50177: Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a net Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
nvd
CVE-2021-28455P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.14393.44012021-05-11
CVE-2021-28455 [HIGH] CVE-2021-28455: Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability
nvd
CVE-2022-24487P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.50662022-04-15
CVE-2022-24487 [HIGH] CVE-2022-24487: Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
nvd
CVE-2025-21407P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.77852025-02-11
CVE-2025-21407 [HIGH] CWE-122 CVE-2025-21407: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21406P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.77852025-02-11
CVE-2025-21406 [HIGH] CWE-416 CVE-2025-21406: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21190P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.77852025-02-11
CVE-2025-21190 [HIGH] CWE-122 CVE-2025-21190: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21201P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.77852025-02-11
CVE-2025-21201 [HIGH] CWE-415 CVE-2025-21201: Windows Telephony Server Remote Code Execution Vulnerability Windows Telephony Server Remote Code Execution Vulnerability
nvd
CVE-2025-21200P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.77852025-02-11
CVE-2025-21200 [HIGH] CWE-122 CVE-2025-21200: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2023-21695P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.57172023-02-14
CVE-2023-21695 [HIGH] CWE-122 CVE-2023-21695: Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
nvd
CVE-2025-33066P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.81482025-06-10
CVE-2025-33066 [HIGH] CWE-122 CVE-2025-33066: Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-32157P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.90602026-04-14
CVE-2026-32157 [HIGH] CWE-416 CVE-2026-32157: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-50474P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.93392026-07-14
CVE-2026-50474 [HIGH] CWE-416 CVE-2026-50474: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-47653P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.92342026-06-09
CVE-2026-47653 [HIGH] CWE-416 CVE-2026-47653: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-50370P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.93392026-07-14
CVE-2026-50370 [HIGH] CWE-20 CVE-2026-50370: Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code ov Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-34329P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.91402026-05-12
CVE-2026-34329 [HIGH] CWE-122 CVE-2026-34329: Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute cod Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-42975P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.93392026-07-14
CVE-2026-42975 [HIGH] CWE-122 CVE-2026-42975: Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execu Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-50692P3HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.93392026-07-14
CVE-2026-50692 [HIGH] CWE-122 CVE-2026-50692: Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privil Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
nvd
Microsoft Windows 10 Version 1607 vulnerabilities | cvebase