cbcvebase.

Microsoft Windows 10 Version 1803 vulnerabilities

621 known vulnerabilities affecting microsoft/windows_10_version_1803.

Total CVEs
621
CISA KEV
7
actively exploited
Public exploits
22
Exploited in wild
17
Severity breakdown
CRITICAL17HIGH455MEDIUM148LOW1

Vulnerabilities

Page 5 of 32
CVE-2021-28352P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28352 [HIGH] CVE-2021-28352: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28332P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28332 [HIGH] CVE-2021-28332: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28346P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28346 [HIGH] CVE-2021-28346: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28337P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28337 [HIGH] CVE-2021-28337: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28343P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28343 [HIGH] CVE-2021-28343: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28345P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28345 [HIGH] CVE-2021-28345: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28354P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28354 [HIGH] CVE-2021-28354: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28334P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28334 [HIGH] CVE-2021-28334: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28358P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28358 [HIGH] CVE-2021-28358: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28357P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28357 [HIGH] CVE-2021-28357: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28336P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28336 [HIGH] CVE-2021-28336: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-28353P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28353 [HIGH] CVE-2021-28353: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2019-1125P3MEDIUMCVSS 5.6PoC≥ 10.0.0, < publication2019-09-03
CVE-2019-1125 [MEDIUM] CVE-2019-1125: An information disclosure vulnerability exists when certain central processing units (CPU) speculati An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory. An attacker who successfully exploited the vulnerability could read privileged data across trust boundaries. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The v
nvd
CVE-2020-17090P3CRITICALCVSS 9.8≥ 10.0.0, < publication2020-11-11
CVE-2020-17090 [CRITICAL] CVE-2020-17090: Microsoft Defender for Endpoint Security Feature Bypass Vulnerability Microsoft Defender for Endpoint Security Feature Bypass Vulnerability
nvd
CVE-2020-17040P3CRITICALCVSS 9.8≥ 10.0.0, < publication2020-11-11
CVE-2020-17040 [CRITICAL] CVE-2020-17040: Windows Hyper-V Security Feature Bypass Vulnerability Windows Hyper-V Security Feature Bypass Vulnerability
nvd
CVE-2020-1285P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1285 [HIGH] CVE-2020-1285: <p>A remote code execution vulnerability exists in the way that the Windows Graphics Device Interfac A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users who
nvd
CVE-2020-1509P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1509 [HIGH] CVE-2020-1509: An elevation of privilege vulnerability exists in the Local Security Authority Subsystem Service (LS An elevation of privilege vulnerability exists in the Local Security Authority Subsystem Service (LSASS) when an authenticated attacker sends a specially crafted authentication request. A remote attacker who successfully exploited this vulnerability could cause an elevation of privilege on the target system's LSASS service. The security update addresses the vul
nvd
CVE-2020-1117P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-05-21
CVE-2020-1117 [HIGH] CVE-2020-1117: A remote code execution vulnerability exists in the way that the Color Management Module (ICM32.dll) A remote code execution vulnerability exists in the way that the Color Management Module (ICM32.dll) handles objects in memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accou
nvd
CVE-2020-16915P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16915 [HIGH] CWE-787 CVE-2020-16915: <p>A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory. An attacker who successfully exploited the vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights. There are multiple ways an attacker could exploit the vulnerability, such as by convinc
nvd
CVE-2021-1694P3CRITICALCVSS 9.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1694 [CRITICAL] CWE-269 CVE-2021-1694: Windows Update Stack Elevation of Privilege Vulnerability Windows Update Stack Elevation of Privilege Vulnerability
nvd
Microsoft Windows 10 Version 1803 vulnerabilities | cvebase