Microsoft Windows 10 Version 1809 vulnerabilities

3,135 known vulnerabilities affecting microsoft/windows_10_version_1809.

Total CVEs
3,135
CISA KEV
116
actively exploited
Public exploits
58
Exploited in wild
102
Severity breakdown
CRITICAL83HIGH2241MEDIUM800LOW11

Vulnerabilities

Page 138 of 157
CVE-2021-1692HIGHCVSS 7.7≥ 10.0.0, < publication2021-01-12
CVE-2021-1692 [HIGH] Windows Hyper-V Denial of Service Vulnerability Windows Hyper-V Denial of Service Vulnerability Windows Hyper-V Denial of Service Vulnerability
cvelistv5
CVE-2021-1667HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1667 [HIGH] CVE-2021-1667: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1654HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1654 [HIGH] CWE-269 CVE-2021-1654: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1687HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1687 [HIGH] CWE-269 CVE-2021-1687: Windows WalletService Elevation of Privilege Vulnerability Windows WalletService Elevation of Privilege Vulnerability
nvd
CVE-2021-1704HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1704 [HIGH] CWE-269 CVE-2021-1704: Windows Hyper-V Elevation of Privilege Vulnerability Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2021-1680HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1680 [HIGH] CWE-269 CVE-2021-1680: Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
nvd
CVE-2021-1685HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1685 [HIGH] CWE-269 CVE-2021-1685: Windows AppX Deployment Extensions Elevation of Privilege Vulnerability Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
nvd
CVE-2021-1686HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1686 [HIGH] CWE-269 CVE-2021-1686: Windows WalletService Elevation of Privilege Vulnerability Windows WalletService Elevation of Privilege Vulnerability
nvd
CVE-2021-1669HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1669 [HIGH] CVE-2021-1669: Windows Remote Desktop Security Feature Bypass Vulnerability Windows Remote Desktop Security Feature Bypass Vulnerability
nvd
CVE-2021-1655HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1655 [HIGH] CWE-269 CVE-2021-1655: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1681HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1681 [HIGH] CWE-269 CVE-2021-1681: Windows WalletService Elevation of Privilege Vulnerability Windows WalletService Elevation of Privilege Vulnerability
nvd
CVE-2021-1637MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1637 [MEDIUM] CVE-2021-1637: Windows DNS Query Information Disclosure Vulnerability Windows DNS Query Information Disclosure Vulnerability
nvd
CVE-2021-1684MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1684 [MEDIUM] CVE-2021-1684: Microsoft is aware of the &quot;Impersonation in the Passkey Entry Protocol&quot; vulnerability. For Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1679MEDIUMCVSS 6.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1679 [MEDIUM] Windows CryptoAPI Denial of Service Vulnerability Windows CryptoAPI Denial of Service Vulnerability Windows CryptoAPI Denial of Service Vulnerability
cvelistv5
CVE-2021-1683MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1683 [MEDIUM] CVE-2021-1683: Microsoft is aware of the &quot;Impersonation in the Passkey Entry Protocol&quot; vulnerability. For Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1656MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1656 [MEDIUM] CVE-2021-1656: TPM Device Driver Information Disclosure Vulnerability TPM Device Driver Information Disclosure Vulnerability
nvd
CVE-2021-1699MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1699 [MEDIUM] CVE-2021-1699: Windows (modem.sys) Information Disclosure Vulnerability Windows (modem.sys) Information Disclosure Vulnerability
nvd
CVE-2021-1645MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1645 [MEDIUM] CVE-2021-1645: Windows Docker Information Disclosure Vulnerability Windows Docker Information Disclosure Vulnerability
nvd
CVE-2021-1638MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1638 [MEDIUM] CVE-2021-1638: Microsoft is aware of the &quot;Impersonation in the Passkey Entry Protocol&quot; vulnerability. For Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1672MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1672 [MEDIUM] CVE-2021-1672: Windows Projected File System FS Filter Driver Information Disclosure Vulnerability Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
nvd