Microsoft Windows 10 Version 21H2 vulnerabilities

2,449 known vulnerabilities affecting microsoft/windows_10_version_21h2.

Total CVEs
2,449
CISA KEV
94
actively exploited
Public exploits
36
Exploited in wild
75
Severity breakdown
CRITICAL60HIGH1758MEDIUM621LOW10

Vulnerabilities

Page 99 of 123
CVE-2022-41090MEDIUMCVSS 5.9≥ 10.0.19043.0, < 10.0.19044.22512022-11-09
CVE-2022-41090 [MEDIUM] CWE-362 CVE-2022-41090: Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
nvd
CVE-2022-41098MEDIUMCVSS 5.5≥ 10.0.19043.0, < 10.0.19044.22512022-11-09
CVE-2022-41098 [MEDIUM] Windows GDI+ Information Disclosure Vulnerability Windows GDI+ Information Disclosure Vulnerability Windows GDI+ Information Disclosure Vulnerability
cvelistv5
CVE-2022-41091MEDIUMCVSS 5.4KEV≥ 10.0.19043.0, < 10.0.19044.22512022-11-09
CVE-2022-41091 [MEDIUM] CWE-863 CVE-2022-41091: Windows Mark of the Web Security Feature Bypass Vulnerability Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2022-38051HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38051 [HIGH] CVE-2022-38051: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-37997HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37997 [HIGH] CVE-2022-37997: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-38041HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38041 [HIGH] CVE-2022-38041: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2022-37979HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37979 [HIGH] CVE-2022-37979: Windows Hyper-V Elevation of Privilege Vulnerability Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2022-37975HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37975 [HIGH] CVE-2022-37975: Windows Group Policy Elevation of Privilege Vulnerability Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2022-37973HIGHCVSS 7.7≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37973 [HIGH] CVE-2022-37973: Windows Local Session Manager (LSM) Denial of Service Vulnerability Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2022-24504HIGHCVSS 8.1≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-24504 [HIGH] CWE-362 CVE-2022-24504: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-37989HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37989 [HIGH] CVE-2022-37989: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-37980HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37980 [HIGH] CVE-2022-37980: Windows DHCP Client Elevation of Privilege Vulnerability Windows DHCP Client Elevation of Privilege Vulnerability
nvd
CVE-2022-38038HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38038 [HIGH] CVE-2022-38038: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-38044HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38044 [HIGH] CVE-2022-38044: Windows CD-ROM File System Driver Remote Code Execution Vulnerability Windows CD-ROM File System Driver Remote Code Execution Vulnerability
nvd
CVE-2022-37978HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37978 [HIGH] CVE-2022-37978: Windows Active Directory Certificate Services Security Feature Bypass Windows Active Directory Certificate Services Security Feature Bypass
nvd
CVE-2022-37998HIGHCVSS 7.7≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37998 [HIGH] CVE-2022-37998: Windows Local Session Manager (LSM) Denial of Service Vulnerability Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2022-37995HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37995 [HIGH] CVE-2022-37995: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-38047HIGHCVSS 8.1≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38047 [HIGH] CWE-362 CVE-2022-38047: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-38040HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38040 [HIGH] CVE-2022-38040: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2022-38021HIGHCVSS 7.0≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-38021 [HIGH] CWE-362 CVE-2022-38021: Connected User Experiences and Telemetry Elevation of Privilege Vulnerability Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
nvd