Microsoft Windows 10 Version 20H2 vulnerabilities

1,260 known vulnerabilities affecting microsoft/windows_10_version_20h2.

Total CVEs
1,260
CISA KEV
53
actively exploited
Public exploits
20
Exploited in wild
63
Severity breakdown
CRITICAL41HIGH947MEDIUM268LOW4

Vulnerabilities

Page 32 of 63
CVE-2022-23290HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23290 [HIGH] CVE-2022-23290: Windows Inking COM Elevation of Privilege Vulnerability Windows Inking COM Elevation of Privilege Vulnerability
nvd
CVE-2022-23285HIGHCVSS 8.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23285 [HIGH] CVE-2022-23285: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2022-24460HIGHCVSS 7.0≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24460 [HIGH] CVE-2022-24460: Tablet Windows User Interface Application Elevation of Privilege Vulnerability Tablet Windows User Interface Application Elevation of Privilege Vulnerability
nvd
CVE-2022-24525HIGHCVSS 7.0≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24525 [HIGH] CWE-362 CVE-2022-24525: Windows Update Stack Elevation of Privilege Vulnerability Windows Update Stack Elevation of Privilege Vulnerability
nvd
CVE-2022-24459HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24459 [HIGH] CVE-2022-24459: Windows Fax and Scan Service Elevation of Privilege Vulnerability Windows Fax and Scan Service Elevation of Privilege Vulnerability
nvd
CVE-2022-23286HIGHCVSS 7.0≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23286 [HIGH] CVE-2022-23286: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-23284HIGHCVSS 7.2≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23284 [HIGH] CVE-2022-23284: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-24507HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24507 [HIGH] CVE-2022-24507: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2022-23291HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23291 [HIGH] CVE-2022-23291: Windows DWM Core Library Elevation of Privilege Vulnerability Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2022-23294HIGHCVSS 8.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23294 [HIGH] CVE-2022-23294: Windows Event Tracing Remote Code Execution Vulnerability Windows Event Tracing Remote Code Execution Vulnerability
nvd
CVE-2022-23283HIGHCVSS 7.0≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23283 [HIGH] Windows ALPC Elevation of Privilege Vulnerability Windows ALPC Elevation of Privilege Vulnerability Windows ALPC Elevation of Privilege Vulnerability
cvelistv5
CVE-2022-24505HIGHCVSS 7.0≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24505 [HIGH] Windows ALPC Elevation of Privilege Vulnerability Windows ALPC Elevation of Privilege Vulnerability Windows ALPC Elevation of Privilege Vulnerability
cvelistv5
CVE-2022-24508HIGHCVSS 8.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24508 [HIGH] CVE-2022-24508: Win32 File Enumeration Remote Code Execution Vulnerability Win32 File Enumeration Remote Code Execution Vulnerability
nvd
CVE-2022-23299HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23299 [HIGH] Windows PDEV Elevation of Privilege Vulnerability Windows PDEV Elevation of Privilege Vulnerability Windows PDEV Elevation of Privilege Vulnerability
cvelistv5
CVE-2022-23253MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23253 [MEDIUM] CVE-2022-23253: Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
nvd
CVE-2022-23297MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23297 [MEDIUM] CVE-2022-23297: Windows NT Lan Manager Datagram Receiver Driver Information Disclosure Vulnerability Windows NT Lan Manager Datagram Receiver Driver Information Disclosure Vulnerability
nvd
CVE-2022-24502MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24502 [MEDIUM] CVE-2022-24502: Windows HTML Platforms Security Feature Bypass Vulnerability Windows HTML Platforms Security Feature Bypass Vulnerability
nvd
CVE-2022-24503MEDIUMCVSS 5.3≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24503 [MEDIUM] CVE-2022-24503: Remote Desktop Protocol Client Information Disclosure Vulnerability Remote Desktop Protocol Client Information Disclosure Vulnerability
nvd
CVE-2022-22010MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-22010 [MEDIUM] CVE-2022-22010: Media Foundation Information Disclosure Vulnerability Media Foundation Information Disclosure Vulnerability
nvd
CVE-2022-23281MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-23281 [MEDIUM] CVE-2022-23281: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd