Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2642MEDIUM872LOW13
Vulnerabilities
Page 97 of 182
CVE-2022-26810P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.16452022-04-15
CVE-2022-26810 [HIGH] CVE-2022-26810: Windows File Server Resource Management Service Elevation of Privilege Vulnerability
Windows File Server Resource Management Service Elevation of Privilege Vulnerability
nvd
CVE-2023-23422P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.27282023-03-14
CVE-2023-23422 [HIGH] CVE-2023-23422: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-23423P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.27282023-03-14
CVE-2023-23423 [HIGH] CVE-2023-23423: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-21234P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21234 [HIGH] CWE-20 CVE-2025-21234: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2025-21235P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21235 [HIGH] CWE-20 CVE-2025-21235: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2023-36729P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19041.35702023-10-10
CVE-2023-36729 [HIGH] CWE-121 CVE-2023-36729: Named Pipe File System Elevation of Privilege Vulnerability
Named Pipe File System Elevation of Privilege Vulnerability
nvd
CVE-2022-37995P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37995 [HIGH] CVE-2022-37995: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-28237P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.28462023-04-11
CVE-2023-28237 [HIGH] CWE-190 CVE-2023-28237: Windows Kernel Remote Code Execution Vulnerability
Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2024-26239P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.42912024-04-09
CVE-2024-26239 [HIGH] CWE-122 CVE-2024-26239: Windows Telephony Server Elevation of Privilege Vulnerability
Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2025-59200P3HIGHCVSS 7.7≥ 10.0.19044.0, < 10.0.19044.64562025-10-14
CVE-2025-59200 [HIGH] CWE-73 CVE-2025-59200: Concurrent execution using shared resource with improper synchronization ('race condition') in Data
Concurrent execution using shared resource with improper synchronization ('race condition') in Data Sharing Service Client allows an unauthorized attacker to perform spoofing locally.
nvd
CVE-2025-21287P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21287 [HIGH] CWE-269 CVE-2025-21287: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2023-36725P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19041.35702023-10-10
CVE-2023-36725 [HIGH] CWE-284 CVE-2023-36725: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-43223P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19044.14152021-12-15
CVE-2021-43223 [HIGH] CVE-2021-43223: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2023-35353P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.32082023-07-11
CVE-2023-35353 [HIGH] CWE-59 CVE-2023-35353: Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
nvd
CVE-2023-32012P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.30862023-06-14
CVE-2023-32012 [HIGH] CWE-59 CVE-2023-32012: Windows Container Manager Service Elevation of Privilege Vulnerability
Windows Container Manager Service Elevation of Privilege Vulnerability
nvd
CVE-2025-21382P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21382 [HIGH] CWE-122 CVE-2025-21382: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-43530P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43530 [HIGH] CWE-284 CVE-2024-43530: Windows Update Stack Elevation of Privilege Vulnerability
Windows Update Stack Elevation of Privilege Vulnerability
nvd
CVE-2023-21755P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.24862023-01-10
CVE-2023-21755 [HIGH] CWE-416 CVE-2023-21755: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-47973P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.60932025-07-08
CVE-2025-47973 [HIGH] CWE-126 CVE-2025-47973: Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges l
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2025-47971P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.60932025-07-08
CVE-2025-47971 [HIGH] CWE-126 CVE-2025-47971: Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges l
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd