cbcvebase.

Microsoft Windows 10 Version 20H2 vulnerabilities

1,259 known vulnerabilities affecting microsoft/windows_10_version_20h2.

Total CVEs
1,259
CISA KEV
53
actively exploited
Public exploits
38
Exploited in wild
75
Severity breakdown
CRITICAL41HIGH946MEDIUM268LOW4

Vulnerabilities

Page 50 of 63
CVE-2021-34466P4MEDIUMCVSS 6.1≥ 10.0.0, < 10.0.19042.11102021-07-16
CVE-2021-34466 [MEDIUM] CWE-290 CVE-2021-34466: Windows Hello Security Feature Bypass Vulnerability Windows Hello Security Feature Bypass Vulnerability
nvd
CVE-2022-35797P4MEDIUMCVSS 6.1≥ 10.0.0, < 10.0.19042.18892022-08-09
CVE-2022-35797 [MEDIUM] CVE-2022-35797: Windows Hello Security Feature Bypass Vulnerability Windows Hello Security Feature Bypass Vulnerability
nvd
CVE-2021-42288P4MEDIUMCVSS 6.1≥ 10.0.0, < 10.0.19042.13482021-11-10
CVE-2021-42288 [MEDIUM] CVE-2021-42288: Windows Hello Security Feature Bypass Vulnerability Windows Hello Security Feature Bypass Vulnerability
nvd
CVE-2022-44684P4MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19042.23642023-12-20
CVE-2022-44684 [MEDIUM] CVE-2022-44684: Windows Local Session Manager (LSM) Denial of Service Vulnerability Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2023-28270P4MEDIUMCVSS 6.8≥ 10.0.0, < 10.0.19042.28462023-04-11
CVE-2023-28270 [MEDIUM] CWE-863 CVE-2023-28270: Windows Lock Screen Security Feature Bypass Vulnerability Windows Lock Screen Security Feature Bypass Vulnerability
nvd
CVE-2022-21928P4MEDIUMCVSS 6.4≥ 10.0.0, < 10.0.19042.14662022-01-11
CVE-2022-21928 [MEDIUM] CVE-2022-21928: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2021-1683P4MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1683 [MEDIUM] CVE-2021-1683: Microsoft is aware of the &quot;Impersonation in the Passkey Entry Protocol&quot; vulnerability. For Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1684P4MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1684 [MEDIUM] CVE-2021-1684: Microsoft is aware of the &quot;Impersonation in the Passkey Entry Protocol&quot; vulnerability. For Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2023-28226P4MEDIUMCVSS 5.3≥ 10.0.0, < 10.0.19042.28462023-04-11
CVE-2023-28226 [MEDIUM] CWE-347 CVE-2023-28226: Windows Enroll Engine Security Feature Bypass Vulnerability Windows Enroll Engine Security Feature Bypass Vulnerability
nvd
CVE-2023-28266P4MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.19042.28462023-04-11
CVE-2023-28266 [MEDIUM] CWE-126 CVE-2023-28266: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2021-43224P4MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.19042.14152021-12-15
CVE-2021-43224 [MEDIUM] CVE-2021-43224: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2021-27079P4MEDIUMCVSS 5.7≥ 10.0.0, < publication2021-04-13
CVE-2021-27079 [MEDIUM] CVE-2021-27079: Windows Media Photo Codec Information Disclosure Vulnerability Windows Media Photo Codec Information Disclosure Vulnerability
nvd
CVE-2023-24944P4MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19042.29652023-05-09
CVE-2023-24944 [MEDIUM] CWE-843 CVE-2023-24944: Windows Bluetooth Driver Information Disclosure Vulnerability Windows Bluetooth Driver Information Disclosure Vulnerability
nvd
CVE-2021-26866P4MEDIUMCVSS 6.1≥ 10.0.0, < publication2021-03-11
CVE-2021-26866 [MEDIUM] CWE-59 CVE-2021-26866: Windows Update Service Elevation of Privilege Vulnerability Windows Update Service Elevation of Privilege Vulnerability
nvd
CVE-2022-41086P4MEDIUMCVSS 6.4≥ 10.0.0, < 10.0.19042.22512022-11-09
CVE-2022-41086 [MEDIUM] CWE-362 CVE-2022-41086: Windows Group Policy Elevation of Privilege Vulnerability Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2022-24503P4MEDIUMCVSS 5.3≥ 10.0.0, < 10.0.19042.15862022-03-09
CVE-2022-24503 [MEDIUM] CVE-2022-24503: Remote Desktop Protocol Client Information Disclosure Vulnerability Remote Desktop Protocol Client Information Disclosure Vulnerability
nvd
CVE-2023-21693P4MEDIUMCVSS 5.7≥ 10.0.0, < 10.0.19042.26042023-02-14
CVE-2023-21693 [MEDIUM] CWE-125 CVE-2023-21693: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2021-1645P4MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1645 [MEDIUM] CVE-2021-1645: Windows Docker Information Disclosure Vulnerability Windows Docker Information Disclosure Vulnerability
nvd
CVE-2021-1638P4MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1638 [MEDIUM] CVE-2021-1638: Microsoft is aware of the &quot;Impersonation in the Passkey Entry Protocol&quot; vulnerability. For Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1731P4MEDIUMCVSS 5.5≥ 10.0.0, < publication2021-02-25
CVE-2021-1731 [MEDIUM] CWE-522 CVE-2021-1731: PFX Encryption Security Feature Bypass Vulnerability PFX Encryption Security Feature Bypass Vulnerability
nvd
Microsoft Windows 10 Version 20H2 vulnerabilities | cvebase