Microsoft Windows 10 Version 1909 vulnerabilities
966 known vulnerabilities affecting microsoft/windows_10_version_1909.
Total CVEs
966
CISA KEV
33
actively exploited
Public exploits
26
Exploited in wild
48
Severity breakdown
CRITICAL31HIGH718MEDIUM214LOW3
Vulnerabilities
Page 11 of 49
CVE-2022-24474P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.22122022-04-15
CVE-2022-24474 [HIGH] CVE-2022-24474: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2022-21974P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.20942022-02-09
CVE-2022-21974 [HIGH] CVE-2022-21974: Roaming Security Rights Management Services Remote Code Execution Vulnerability
Roaming Security Rights Management Services Remote Code Execution Vulnerability
nvd
CVE-2021-26882P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-03-11
CVE-2021-26882 [HIGH] CVE-2021-26882: Remote Access API Elevation of Privilege Vulnerability
Remote Access API Elevation of Privilege Vulnerability
nvd
CVE-2022-24545P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.18363.22122022-04-15
CVE-2022-24545 [HIGH] CVE-2022-24545: Windows Kerberos Remote Code Execution Vulnerability
Windows Kerberos Remote Code Execution Vulnerability
nvd
CVE-2020-16927P3HIGHCVSS 7.5≥ 10.0.0, < publication2020-10-16
CVE-2020-16927 [HIGH] CVE-2020-16927: <p>A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connec
A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successfully exploited this vulnerability could cause the RDP service on the target system to stop responding.
To exploit this vulnerability, an attacker would need to run a sp
nvd
CVE-2022-22000P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.20942022-02-09
CVE-2022-22000 [HIGH] CVE-2022-22000: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-21843P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.18363.20372022-01-11
CVE-2022-21843 [HIGH] CVE-2022-21843: Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
nvd
CVE-2021-43233P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.18363.19772021-12-15
CVE-2021-43233 [HIGH] CVE-2021-43233: Remote Desktop Client Remote Code Execution Vulnerability
Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2022-21983P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.18363.22122022-04-15
CVE-2022-21983 [HIGH] CVE-2022-21983: Win32 Stream Enumeration Remote Code Execution Vulnerability
Win32 Stream Enumeration Remote Code Execution Vulnerability
nvd
CVE-2021-34534P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.18363.17342021-08-12
CVE-2021-34534 [HIGH] CVE-2021-34534: Windows MSHTML Platform Remote Code Execution Vulnerability
Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2022-24534P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.18363.22122022-04-15
CVE-2022-24534 [HIGH] CVE-2022-24534: Win32 Stream Enumeration Remote Code Execution Vulnerability
Win32 Stream Enumeration Remote Code Execution Vulnerability
nvd
CVE-2022-24547P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.22122022-04-15
CVE-2022-24547 [HIGH] CVE-2022-24547: Windows Digital Media Receiver Elevation of Privilege Vulnerability
Windows Digital Media Receiver Elevation of Privilege Vulnerability
nvd
CVE-2020-1599MEDIUMCVSS 5.5ExploitedRansomware≥ 10.0.0, < publication2020-11-11
CVE-2020-1599 [MEDIUM] Windows Spoofing Vulnerability
Windows Spoofing Vulnerability
Windows Spoofing Vulnerability
cvelistv5
CVE-2020-0997P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0997 [HIGH] CWE-787 CVE-2020-0997: <p>A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handle
A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected system
nvd
CVE-2020-16968P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16968 [HIGH] CWE-20 CVE-2020-16968: <p>A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handle
A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected syste
nvd
CVE-2020-1034P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1034 [HIGH] CVE-2020-1034: <p>An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update addresses the vulnerabili
nvd
CVE-2020-1167P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-1167 [HIGH] CWE-20 CVE-2020-1167: <p>A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle
A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code on a target system.
To exploit the vulnerability, a user would have to open a specially crafted file.
The security update addresses the vulnerability by
nvd
CVE-2021-27095P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-04-13
CVE-2021-27095 [HIGH] CVE-2021-27095: Windows Media Video Decoder Remote Code Execution Vulnerability
Windows Media Video Decoder Remote Code Execution Vulnerability
nvd
CVE-2020-17022P3HIGHCVSS 7.8vN/A2020-10-16
CVE-2020-17022 [HIGH] CVE-2020-17022: <p>A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library han
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code.
Exploitation of the vulnerability requires that a program process a specially crafted image file.
The update addresses the vulnerability by correcting ho
nvd
CVE-2020-1252P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1252 [HIGH] CVE-2020-1252: <p>A remote code execution vulnerability exists when Windows improperly handles objects in memory. T
A remote code execution vulnerability exists when Windows improperly handles objects in memory. To exploit the vulnerability an attacker would have to convince a user to run a specially crafted application.
An attacker who successfully exploited this vulnerability could execute arbitrary code and take control of an affected system. An attacker could then instal
nvd