Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2642MEDIUM872LOW13
Vulnerabilities
Page 113 of 182
CVE-2025-29809P3HIGHCVSS 7.1≥ 10.0.19044.0, < 10.0.19044.57372025-04-08
CVE-2025-29809 [HIGH] CWE-922 CVE-2025-29809: Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypas
Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2024-49096P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.52472024-12-12
CVE-2024-49096 [HIGH] CWE-400 CVE-2024-49096: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2024-49075P3HIGHCVSS 7.5≥ 10.0.19044.0, < 10.0.19044.52472024-12-12
CVE-2024-49075 [HIGH] CWE-400 CVE-2024-49075: Windows Remote Desktop Services Denial of Service Vulnerability
Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2023-36709P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19041.35702023-10-10
CVE-2023-36709 [HIGH] CWE-476 CVE-2023-36709: Microsoft AllJoyn API Denial of Service Vulnerability
Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2025-21300P3HIGHCVSS 7.5≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21300 [HIGH] CWE-400 CVE-2025-21300: Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability
Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability
nvd
CVE-2024-38068P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.46512024-07-09
CVE-2024-38068 [HIGH] CWE-400 CVE-2024-38068: Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
nvd
CVE-2024-20687P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.39302024-01-09
CVE-2024-20687 [HIGH] CWE-125 CVE-2024-20687: Microsoft AllJoyn API Denial of Service Vulnerability
Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2024-38145P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.47802024-08-13
CVE-2024-38145 [HIGH] CWE-476 CVE-2024-38145: Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
nvd
CVE-2024-38146P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.47802024-08-13
CVE-2024-38146 [HIGH] CWE-476 CVE-2024-38146: Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
nvd
CVE-2024-21348P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.40462024-02-13
CVE-2024-21348 [HIGH] CWE-122 CVE-2024-21348: Internet Connection Sharing (ICS) Denial of Service Vulnerability
Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2023-21701P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.26042023-02-14
CVE-2023-21701 [HIGH] CWE-126 CVE-2023-21701: Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability
nvd
CVE-2023-24901P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.29652023-05-09
CVE-2023-24901 [HIGH] CWE-126 CVE-2023-24901: Windows NFS Portmapper Information Disclosure Vulnerability
Windows NFS Portmapper Information Disclosure Vulnerability
nvd
CVE-2022-35760P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.18892022-08-09
CVE-2022-35760 [HIGH] CVE-2022-35760: Microsoft ATA Port Driver Elevation of Privilege Vulnerability
Microsoft ATA Port Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-24856P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.27282023-03-14
CVE-2023-24856 [HIGH] CWE-20 CVE-2023-24856: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2023-24858P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.27282023-03-14
CVE-2023-24858 [HIGH] CWE-126 CVE-2023-24858: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2021-43239P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19044.14152021-12-15
CVE-2021-43239 [HIGH] CVE-2021-43239: Windows Recovery Environment Agent Elevation of Privilege Vulnerability
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
nvd
CVE-2021-43248P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19044.14152021-12-15
CVE-2021-43248 [HIGH] CVE-2021-43248: Windows Digital Media Receiver Elevation of Privilege Vulnerability
Windows Digital Media Receiver Elevation of Privilege Vulnerability
nvd
CVE-2022-41095P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.22512022-11-09
CVE-2022-41095 [HIGH] CVE-2022-41095: Windows Digital Media Receiver Elevation of Privilege Vulnerability
Windows Digital Media Receiver Elevation of Privilege Vulnerability
nvd
CVE-2022-41100P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.22512022-11-09
CVE-2022-41100 [HIGH] CWE-362 CVE-2022-41100: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-41045P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.22512022-11-09
CVE-2022-41045 [HIGH] CWE-362 CVE-2022-41045: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd