Microsoft Windows 11 21H2 vulnerabilities
799 known vulnerabilities affecting microsoft/windows_11_21h2.
Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
34
Exploited in wild
63
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1
Vulnerabilities
Page 16 of 40
CVE-2024-38141P3HIGHCVSS 7.8fixed in 10.0.22000.31472024-08-13
CVE-2024-38141 [HIGH] CWE-416 CVE-2024-38141: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2024-38150P3HIGHCVSS 7.8fixed in 10.0.22000.31472024-08-13
CVE-2024-38150 [HIGH] CWE-416 CVE-2024-38150: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2024-43560P3HIGHCVSS 7.8fixed in 10.0.22000.32602024-10-08
CVE-2024-43560 [HIGH] CWE-122 CVE-2024-43560: Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability
Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-29996P3HIGHCVSS 7.8fixed in 10.0.22000.29602024-05-14
CVE-2024-29996 [HIGH] CWE-125 CVE-2024-29996: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-29351P3HIGHCVSS 8.1fixed in 10.0.22000.20572023-06-14
CVE-2023-29351 [HIGH] CWE-59 CVE-2023-29351: Windows Group Policy Elevation of Privilege Vulnerability
Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2024-29995P3HIGHCVSS 8.1fixed in 10.0.22000.31472024-08-13
CVE-2024-29995 [HIGH] CWE-208 CVE-2024-29995: Windows Kerberos Elevation of Privilege Vulnerability
Windows Kerberos Elevation of Privilege Vulnerability
nvd
CVE-2023-23410P3HIGHCVSS 7.8fixed in 10.0.22000.16962023-03-14
CVE-2023-23410 [HIGH] CWE-190 CVE-2023-23410: Windows HTTP.sys Elevation of Privilege Vulnerability
Windows HTTP.sys Elevation of Privilege Vulnerability
nvd
CVE-2023-36718P3HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36718 [HIGH] CWE-94 CVE-2023-36718: Microsoft Virtual Trusted Platform Module Remote Code Execution Vulnerability
Microsoft Virtual Trusted Platform Module Remote Code Execution Vulnerability
nvd
CVE-2024-30015P3HIGHCVSS 7.5fixed in 10.0.22000.29602024-05-14
CVE-2024-30015 [HIGH] CWE-197 CVE-2024-30015: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-30029P3HIGHCVSS 7.5fixed in 10.0.22000.29602024-05-14
CVE-2024-30029 [HIGH] CWE-197 CVE-2024-30029: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-30014P3HIGHCVSS 7.5fixed in 10.0.22000.29602024-05-14
CVE-2024-30014 [HIGH] CWE-197 CVE-2024-30014: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2023-28238P3HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28238 [HIGH] CWE-591 CVE-2023-28238: Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
nvd
CVE-2022-35751P3HIGHCVSS 7.8fixed in 10.0.22000.8562023-05-31
CVE-2022-35751 [HIGH] CVE-2022-35751: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2023-21812P3HIGHCVSS 7.8fixed in 10.0.22000.15742023-02-14
CVE-2023-21812 [HIGH] CWE-122 CVE-2023-21812: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-30035P3HIGHCVSS 7.8fixed in 10.0.22000.29602024-05-14
CVE-2024-30035 [HIGH] CWE-416 CVE-2024-30035: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2024-38147P3HIGHCVSS 7.8fixed in 10.0.22000.31472024-08-13
CVE-2024-38147 [HIGH] CWE-416 CVE-2024-38147: Microsoft DWM Core Library Elevation of Privilege Vulnerability
Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-35364P3HIGHCVSS 8.8fixed in 10.0.22000.21762023-07-11
CVE-2023-35364 [HIGH] CWE-190 CVE-2023-35364: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-35755P3HIGHCVSS 7.3fixed in 10.0.22000.8562023-05-31
CVE-2022-35755 [HIGH] CVE-2022-35755: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2023-36425P3HIGHCVSS 8.0fixed in 10.0.22000.26002023-11-14
CVE-2023-36425 [HIGH] CWE-122 CVE-2023-36425: Windows Distributed File System (DFS) Remote Code Execution Vulnerability
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
nvd
CVE-2023-1017P3HIGHCVSS 7.8fixed in 10.0.22000.16962023-02-28
CVE-2023-1017 [HIGH] CWE-787 CVE-2023-1017: An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte
An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can lead to denial of service (crashing the TPM chip/process or rendering it unusable) and/or arbitrary code execution
nvd