Microsoft Windows 10 Version 2004 vulnerabilities
755 known vulnerabilities affecting microsoft/windows_10_version_2004.
Total CVEs
755
CISA KEV
26
actively exploited
Public exploits
17
Exploited in wild
34
Severity breakdown
CRITICAL23HIGH553MEDIUM177LOW2
Vulnerabilities
Page 27 of 38
CVE-2021-36966P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12372021-09-15
CVE-2021-36966 [HIGH] CWE-269 CVE-2021-36966: Windows Subsystem for Linux Elevation of Privilege Vulnerability
Windows Subsystem for Linux Elevation of Privilege Vulnerability
nvd
CVE-2021-36964P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12372021-09-15
CVE-2021-36964 [HIGH] CWE-269 CVE-2021-36964: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-41339P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-41339 [HIGH] CWE-269 CVE-2021-41339: Microsoft DWM Core Library Elevation of Privilege Vulnerability
Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2021-36957P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.13482021-11-10
CVE-2021-36957 [HIGH] CWE-269 CVE-2021-36957: Windows Desktop Bridge Elevation of Privilege Vulnerability
Windows Desktop Bridge Elevation of Privilege Vulnerability
nvd
CVE-2021-42286P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.13482021-11-10
CVE-2021-42286 [HIGH] CWE-269 CVE-2021-42286: Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege Vulnerabi
Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege Vulnerability
nvd
CVE-2021-41334P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-41334 [HIGH] CWE-269 CVE-2021-41334: Windows Desktop Bridge Elevation of Privilege Vulnerability
Windows Desktop Bridge Elevation of Privilege Vulnerability
nvd
CVE-2021-24082P3MEDIUMCVSS 6.5≥ 10.0.0, < publication2021-02-25
CVE-2021-24082 [MEDIUM] CVE-2021-24082: Microsoft.PowerShell.Utility Module WDAC Security Feature Bypass Vulnerability
Microsoft.PowerShell.Utility Module WDAC Security Feature Bypass Vulnerability
nvd
CVE-2021-28444P3MEDIUMCVSS 6.5≥ 10.0.0, < publication2021-04-13
CVE-2021-28444 [MEDIUM] CVE-2021-28444: Windows Hyper-V Security Feature Bypass Vulnerability
Windows Hyper-V Security Feature Bypass Vulnerability
nvd
CVE-2021-40460P3MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-40460 [MEDIUM] CVE-2021-40460: Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability
Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability
nvd
CVE-2020-1560P3HIGHCVSS 7.3vN/A2020-08-17
CVE-2020-1560 [HIGH] CVE-2020-1560: A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handle
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Exploitation of the vuln
nvd
CVE-2021-31205P3MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19041.9822021-05-11
CVE-2021-31205 [MEDIUM] CVE-2021-31205: Windows SMB Client Security Feature Bypass Vulnerability
Windows SMB Client Security Feature Bypass Vulnerability
nvd
CVE-2021-38624P3MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19041.12882021-09-15
CVE-2021-38624 [MEDIUM] CWE-639 CVE-2021-38624: Windows Key Storage Provider Security Feature Bypass Vulnerability
Windows Key Storage Provider Security Feature Bypass Vulnerability
nvd
CVE-2021-43219P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.14152021-12-15
CVE-2021-43219 [HIGH] CVE-2021-43219: DirectX Graphics Kernel File Denial of Service Vulnerability
DirectX Graphics Kernel File Denial of Service Vulnerability
nvd
CVE-2021-31183P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-31183 [HIGH] CVE-2021-31183: Windows TCP/IP Driver Denial of Service Vulnerability
Windows TCP/IP Driver Denial of Service Vulnerability
nvd
CVE-2021-26879P3HIGHCVSS 7.5≥ 10.0.0, < publication2021-03-11
CVE-2021-26879 [HIGH] CVE-2021-26879: Windows Network Address Translation (NAT) Denial of Service Vulnerability
Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2021-34490P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34490 [HIGH] CVE-2021-34490: Windows TCP/IP Driver Denial of Service Vulnerability
Windows TCP/IP Driver Denial of Service Vulnerability
nvd
CVE-2021-33772P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33772 [HIGH] CVE-2021-33772: Windows TCP/IP Driver Denial of Service Vulnerability
Windows TCP/IP Driver Denial of Service Vulnerability
nvd
CVE-2020-1256P3MEDIUMCVSS 6.5≥ 10.0.0, < publication2020-09-11
CVE-2020-1256 [MEDIUM] CVE-2020-1256: <p>An information disclosure vulnerability exists when the Windows GDI component improperly disclose
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.
There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to open a spe
nvd
CVE-2021-31968P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.10522021-06-08
CVE-2021-31968 [HIGH] CVE-2021-31968: Windows Remote Desktop Services Denial of Service Vulnerability
Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2021-33785P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33785 [HIGH] CVE-2021-33785: Windows AF_UNIX Socket Provider Denial of Service Vulnerability
Windows AF_UNIX Socket Provider Denial of Service Vulnerability
nvd