cbcvebase.

Microsoft Windows 10 Version 21H2 vulnerabilities

2,906 known vulnerabilities affecting microsoft/windows_10_version_21h2.

Total CVEs
2,906
CISA KEV
95
actively exploited
Public exploits
67
Exploited in wild
124
Severity breakdown
CRITICAL79HIGH2093MEDIUM721LOW13

Vulnerabilities

Page 135 of 146
CVE-2024-26172P4MEDIUMCVSS 5.5≥ 10.0.19043.0, < 10.0.19044.42912024-04-09
CVE-2024-26172 [MEDIUM] CWE-125 CVE-2024-26172: Windows DWM Core Library Information Disclosure Vulnerability Windows DWM Core Library Information Disclosure Vulnerability
nvd
CVE-2025-21284P4MEDIUMCVSS 5.5≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21284 [MEDIUM] CWE-20 CVE-2025-21284: Windows Virtual Trusted Platform Module Denial of Service Vulnerability Windows Virtual Trusted Platform Module Denial of Service Vulnerability
nvd
CVE-2025-21280P4MEDIUMCVSS 5.5≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21280 [MEDIUM] CWE-20 CVE-2025-21280: Windows Virtual Trusted Platform Module Denial of Service Vulnerability Windows Virtual Trusted Platform Module Denial of Service Vulnerability
nvd
CVE-2024-26220P4MEDIUMCVSS 5.0≥ 10.0.19043.0, < 10.0.19044.42912024-04-09
CVE-2024-26220 [MEDIUM] CWE-908 CVE-2024-26220: Windows Mobile Hotspot Information Disclosure Vulnerability Windows Mobile Hotspot Information Disclosure Vulnerability
nvd
CVE-2023-32019P4MEDIUMCVSS 4.7≥ 10.0.19043.0, < 10.0.19044.30862023-06-14
CVE-2023-32019 [MEDIUM] CWE-668 CVE-2023-32019: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2023-28276P4MEDIUMCVSS 4.4≥ 10.0.19043.0, < 10.0.19044.28462023-04-11
CVE-2023-28276 [MEDIUM] CVE-2023-28276: Windows Group Policy Security Feature Bypass Vulnerability Windows Group Policy Security Feature Bypass Vulnerability
nvd
CVE-2026-20936P4MEDIUMCVSS 4.3≥ 10.0.19044.0, < 10.0.19044.68092026-01-13
CVE-2026-20936 [MEDIUM] CWE-125 CVE-2026-20936: Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a phys Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.
nvd
CVE-2025-49760P4LOWCVSS 3.5≥ 10.0.19044.0, < 10.0.19044.60932025-07-08
CVE-2025-49760 [LOW] CWE-73 CVE-2025-49760: External control of file name or path in Windows Storage allows an authorized attacker to perform sp External control of file name or path in Windows Storage allows an authorized attacker to perform spoofing over a network.
nvd
CVE-2023-24862P4MEDIUMCVSS 5.5≥ 10.0.19043.0, < 10.0.19044.27282023-03-14
CVE-2023-24862 [MEDIUM] CWE-125 CVE-2023-24862: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2024-35270P4MEDIUMCVSS 5.3≥ 10.0.19043.0, < 10.0.19044.46512024-07-09
CVE-2024-35270 [MEDIUM] CWE-400 CVE-2024-35270: Windows iSCSI Service Denial of Service Vulnerability Windows iSCSI Service Denial of Service Vulnerability
nvd
CVE-2022-34704P4MEDIUMCVSS 4.7≥ 10.0.19043.0, < 10.0.19044.18892022-08-09
CVE-2022-34704 [MEDIUM] CWE-203 CVE-2022-34704: Windows Defender Credential Guard Information Disclosure Vulnerability Windows Defender Credential Guard Information Disclosure Vulnerability
nvd
CVE-2022-37981P4MEDIUMCVSS 4.3≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37981 [MEDIUM] CVE-2022-37981: Windows Event Logging Service Denial of Service Vulnerability Windows Event Logging Service Denial of Service Vulnerability
nvd
CVE-2023-21766P4MEDIUMCVSS 4.7≥ 10.0.19043.0, < 10.0.19044.24862023-01-10
CVE-2023-21766 [MEDIUM] CWE-591 CVE-2023-21766: Windows Overlay Filter Information Disclosure Vulnerability Windows Overlay Filter Information Disclosure Vulnerability
nvd
CVE-2022-30212P4MEDIUMCVSS 4.7≥ 10.0.19043.0, < 10.0.19044.18262022-07-12
CVE-2022-30212 [MEDIUM] CWE-362 CVE-2022-30212: Windows Connected Devices Platform Service Information Disclosure Vulnerability Windows Connected Devices Platform Service Information Disclosure Vulnerability
nvd
CVE-2023-24911P4MEDIUMCVSS 4.3≥ 10.0.19043.0, < 10.0.19044.27282023-03-14
CVE-2023-24911 [MEDIUM] CWE-191 CVE-2023-24911: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2024-49098P4MEDIUMCVSS 4.3≥ 10.0.19043.0, < 10.0.19044.52472024-12-12
CVE-2024-49098 [MEDIUM] CWE-125 CVE-2024-49098: Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
nvd
CVE-2024-49099P4MEDIUMCVSS 4.3≥ 10.0.19043.0, < 10.0.19044.52472024-12-12
CVE-2024-49099 [MEDIUM] CWE-125 CVE-2024-49099: Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
nvd
CVE-2024-49103P4MEDIUMCVSS 4.3≥ 10.0.19043.0, < 10.0.19044.52472024-12-12
CVE-2024-49103 [MEDIUM] CWE-125 CVE-2024-49103: Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
nvd
CVE-2025-24055P4MEDIUMCVSS 4.3≥ 10.0.19044.0, < 10.0.19044.56082025-03-11
CVE-2025-24055 [MEDIUM] CWE-125 CVE-2025-24055: Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to disclose information Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to disclose information with a physical attack.
nvd
CVE-2022-22710P4MEDIUMCVSS 5.5≥ 10.0.19043.0, < 10.0.19044.15262022-02-09
CVE-2022-22710 [MEDIUM] CVE-2022-22710: Windows Common Log File System Driver Denial of Service Vulnerability Windows Common Log File System Driver Denial of Service Vulnerability
nvd
Microsoft Windows 10 Version 21H2 vulnerabilities | cvebase