Microsoft Windows 10 Version 2004 vulnerabilities
755 known vulnerabilities affecting microsoft/windows_10_version_2004.
Total CVEs
755
CISA KEV
26
actively exploited
Public exploits
17
Exploited in wild
34
Severity breakdown
CRITICAL23HIGH553MEDIUM177LOW2
Vulnerabilities
Page 22 of 38
CVE-2020-16975P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16975 [HIGH] CVE-2020-16975: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16912P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16912 [HIGH] CVE-2020-16912: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16974P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16974 [HIGH] CVE-2020-16974: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16972P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16972 [HIGH] CVE-2020-16972: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16936P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16936 [HIGH] CVE-2020-16936: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2021-1729P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-03-11
CVE-2021-1729 [HIGH] CWE-269 CVE-2021-1729: Windows Update Stack Setup Elevation of Privilege Vulnerability
Windows Update Stack Setup Elevation of Privilege Vulnerability
nvd
CVE-2021-42280P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.13482021-11-10
CVE-2021-42280 [HIGH] CWE-269 CVE-2021-42280: Windows Feedback Hub Elevation of Privilege Vulnerability
Windows Feedback Hub Elevation of Privilege Vulnerability
nvd
CVE-2020-16973P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16973 [HIGH] CVE-2020-16973: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2021-1695P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1695 [HIGH] CWE-269 CVE-2021-1695: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-34462P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34462 [HIGH] CWE-362 CVE-2021-34462: Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
nvd
CVE-2021-26425P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-26425 [HIGH] CWE-59 CVE-2021-26425: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-1640P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-03-11
CVE-2021-1640 [HIGH] CWE-269 CVE-2021-1640: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-1661P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1661 [HIGH] CWE-665 CVE-2021-1661: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2021-1651P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1651 [HIGH] CWE-269 CVE-2021-1651: Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
nvd
CVE-2021-1697P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1697 [HIGH] CWE-269 CVE-2021-1697: Windows InstallService Elevation of Privilege Vulnerability
Windows InstallService Elevation of Privilege Vulnerability
nvd
CVE-2021-1703P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1703 [HIGH] CWE-269 CVE-2021-1703: Windows Event Logging Service Elevation of Privilege Vulnerability
Windows Event Logging Service Elevation of Privilege Vulnerability
nvd
CVE-2020-1543P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1543 [HIGH] CVE-2020-1543: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1536P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1536 [HIGH] CVE-2020-1536: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1542P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1542 [HIGH] CVE-2020-1542: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1537P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1537 [HIGH] CVE-2020-1537: An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles fil
An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.
The s
nvd