Microsoft Windows 10 Version 2004 vulnerabilities

757 known vulnerabilities affecting microsoft/windows_10_version_2004.

Total CVEs
757
CISA KEV
26
actively exploited
Public exploits
3
Exploited in wild
27
Severity breakdown
CRITICAL23HIGH555MEDIUM177LOW2

Vulnerabilities

Page 8 of 38
CVE-2021-34486HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34486 [HIGH] CWE-416 CVE-2021-34486: Windows Event Tracing Elevation of Privilege Vulnerability Windows Event Tracing Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-34535HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34535 [HIGH] CVE-2021-34535: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-26426HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-26426 [HIGH] CWE-59 CVE-2021-26426: Windows User Account Profile Picture Elevation of Privilege Vulnerability Windows User Account Profile Picture Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-34484HIGHCVSS 7.8KEVPoC≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34484 [HIGH] CVE-2021-34484: Windows User Profile Service Elevation of Privilege Vulnerability Windows User Profile Service Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-34534HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34534 [HIGH] CVE-2021-34534: Windows MSHTML Platform Remote Code Execution Vulnerability Windows MSHTML Platform Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-36937HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-36937 [HIGH] CVE-2021-36937: Windows Media MPEG-4 Video Decoder Remote Code Execution Vulnerability Windows Media MPEG-4 Video Decoder Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-26433HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-26433 [HIGH] CVE-2021-26433: Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
cvelistv5nvd
CVE-2021-34537HIGHCVSS 8.0≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34537 [HIGH] CWE-269 CVE-2021-34537: Windows Bluetooth Driver Elevation of Privilege Vulnerability Windows Bluetooth Driver Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-36948HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-36948 [HIGH] CVE-2021-36948: Windows Update Medic Service Elevation of Privilege Vulnerability Windows Update Medic Service Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-34483HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34483 [HIGH] CWE-269 CVE-2021-34483: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-36932HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-36932 [HIGH] CVE-2021-36932: Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
cvelistv5nvd
CVE-2021-36958HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12372021-08-12
CVE-2021-36958 [HIGH] CVE-2021-36958: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
cvelistv5nvd
CVE-2021-34480MEDIUMCVSS 6.8≥ 10.0.0, < 10.0.19041.11652021-08-12
CVE-2021-34480 [MEDIUM] Scripting Engine Memory Corruption Vulnerability Scripting Engine Memory Corruption Vulnerability Scripting Engine Memory Corruption Vulnerability
cvelistv5
CVE-2021-36934HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19041.11652021-07-22
CVE-2021-36934 [HIGH] CVE-2021-36934: <p>An elevation of privilege vulnerability exists because of overly permissive Access Control Lists An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) database. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data
cvelistv5nvd
CVE-2021-34450CRITICALCVSS 9.9≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34450 [CRITICAL] CVE-2021-34450: Windows Hyper-V Remote Code Execution Vulnerability Windows Hyper-V Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-34481CRITICALCVSS 9.8≥ 10.0.0, < 10.0.19041.11652021-07-16
CVE-2021-34481 [CRITICAL] CWE-269 CVE-2021-34481: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user r
cvelistv5nvd
CVE-2021-34441HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34441 [HIGH] CVE-2021-34441: Microsoft Windows Media Foundation Remote Code Execution Vulnerability Microsoft Windows Media Foundation Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-34461HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34461 [HIGH] CWE-269 CVE-2021-34461: Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-34460HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34460 [HIGH] CWE-269 CVE-2021-34460: Storage Spaces Controller Elevation of Privilege Vulnerability Storage Spaces Controller Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-34447HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34447 [HIGH] CVE-2021-34447: Windows MSHTML Platform Remote Code Execution Vulnerability Windows MSHTML Platform Remote Code Execution Vulnerability
cvelistv5nvd