Microsoft Windows 10 Version 1909 vulnerabilities
966 known vulnerabilities affecting microsoft/windows_10_version_1909.
Total CVEs
966
CISA KEV
33
actively exploited
Public exploits
26
Exploited in wild
48
Severity breakdown
CRITICAL31HIGH718MEDIUM214LOW3
Vulnerabilities
Page 22 of 49
CVE-2021-40478P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.18542021-10-13
CVE-2021-40478 [HIGH] CWE-269 CVE-2021-40478: Storage Spaces Controller Elevation of Privilege Vulnerability
Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2021-31952P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.16212021-06-08
CVE-2021-31952 [HIGH] CVE-2021-31952: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-41345P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.18542021-10-13
CVE-2021-41345 [HIGH] CWE-269 CVE-2021-41345: Storage Spaces Controller Elevation of Privilege Vulnerability
Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2020-1538P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1538 [HIGH] CVE-2020-1538: An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles
An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Wind
nvd
CVE-2020-1517P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1517 [HIGH] CVE-2020-1517: An elevation of privilege vulnerability exists when the Windows File Server Resource Management Serv
An elevation of privilege vulnerability exists when the Windows File Server Resource Management Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by
nvd
CVE-2020-1526P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1526 [HIGH] CVE-2020-1526: An elevation of privilege vulnerability exists when the Windows Network Connection Broker improperly
An elevation of privilege vulnerability exists when the Windows Network Connection Broker improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-1488P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1488 [HIGH] CWE-269 CVE-2020-1488: An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperl
An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to system files.
To exploit this vulnerability, an authenticated attacker would need to run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by corr
nvd
CVE-2020-0912P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0912 [HIGH] CVE-2020-0912: <p>An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider
An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correct
nvd
CVE-2020-1146P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1146 [HIGH] CVE-2020-1146: <p>An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handle
An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Micr
nvd
CVE-2021-1652P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1652 [HIGH] CWE-269 CVE-2021-1652: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1653P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1653 [HIGH] CWE-269 CVE-2021-1653: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1646P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1646 [HIGH] CWE-269 CVE-2021-1646: Windows WLAN Service Elevation of Privilege Vulnerability
Windows WLAN Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1693P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1693 [HIGH] CWE-269 CVE-2021-1693: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1654P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1654 [HIGH] CWE-269 CVE-2021-1654: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1655P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1655 [HIGH] CWE-269 CVE-2021-1655: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-26891P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-03-11
CVE-2021-26891 [HIGH] CVE-2021-26891: Windows Container Execution Agent Elevation of Privilege Vulnerability
Windows Container Execution Agent Elevation of Privilege Vulnerability
nvd
CVE-2021-33751P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.16792021-07-14
CVE-2021-33751 [HIGH] CWE-269 CVE-2021-33751: Storage Spaces Controller Elevation of Privilege Vulnerability
Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2021-41347P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.18542021-10-13
CVE-2021-41347 [HIGH] CWE-269 CVE-2021-41347: Windows AppX Deployment Service Elevation of Privilege Vulnerability
Windows AppX Deployment Service Elevation of Privilege Vulnerability
nvd
CVE-2021-31951P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.18363.16212021-06-08
CVE-2021-31951 [HIGH] CVE-2021-31951: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-1689P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1689 [HIGH] CWE-269 CVE-2021-1689: Windows Multipoint Management Elevation of Privilege Vulnerability
Windows Multipoint Management Elevation of Privilege Vulnerability
nvd