Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2641MEDIUM873LOW13
Vulnerabilities
Page 21 of 182
CVE-2023-28243P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.28462023-04-11
CVE-2023-28243 [HIGH] CWE-843 CVE-2023-28243: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2025-21223P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21223 [HIGH] CWE-122 CVE-2025-21223: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2024-43628P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43628 [HIGH] CWE-190 CVE-2024-43628: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2024-43627P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43627 [HIGH] CWE-122 CVE-2024-43627: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2024-43635P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43635 [HIGH] CWE-190 CVE-2024-43635: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2024-43622P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43622 [HIGH] CWE-122 CVE-2024-43622: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2024-43620P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43620 [HIGH] CWE-122 CVE-2024-43620: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2024-43621P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43621 [HIGH] CWE-122 CVE-2024-43621: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2023-35302P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.32082023-07-11
CVE-2023-35302 [HIGH] CWE-122 CVE-2023-35302: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2025-33066P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.59652025-06-10
CVE-2025-33066 [HIGH] CWE-122 CVE-2025-33066: Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
nvd
CVE-2023-21695P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.26042023-02-14
CVE-2023-21695 [HIGH] CWE-122 CVE-2023-21695: Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
nvd
CVE-2026-73018P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-73018 [HIGH] CWE-122 CVE-2026-73018: Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a n
Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-83998P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-83998 [HIGH] CWE-122 CVE-2026-83998: Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-72986P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-72986 [HIGH] CWE-122 CVE-2026-72986: Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a n
Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-68828P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68828 [HIGH] CWE-122 CVE-2026-68828: Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-62785P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62785 [HIGH] CWE-122 CVE-2026-62785: Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protocol allows an unautho
Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-47289P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.74172026-06-09
CVE-2026-47289 [HIGH] CWE-122 CVE-2026-47289: Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-62816P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62816 [HIGH] CWE-122 CVE-2026-62816: Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized at
Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-54982P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-54982 [HIGH] CWE-191 CVE-2026-54982: Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an una
Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-54999P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-54999 [HIGH] CWE-362 CVE-2026-54999: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code over an adjacent network.
nvd