Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 21 of 40
CVE-2023-36592HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36592 [HIGH] CWE-94 CVE-2023-36592: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36431HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36431 [HIGH] CWE-400 CVE-2023-36431: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36593HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36593 [HIGH] CWE-190 CVE-2023-36593: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36579HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36579 [HIGH] CWE-400 CVE-2023-36579: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36606HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36606 [HIGH] CWE-400 CVE-2023-36606: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36726HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36726 [HIGH] CWE-416 CVE-2023-36726: Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability
nvd
CVE-2023-36578HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36578 [HIGH] CWE-843 CVE-2023-36578: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36605HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36605 [HIGH] CWE-416 CVE-2023-36605: Windows Named Pipe Filesystem Elevation of Privilege Vulnerability Windows Named Pipe Filesystem Elevation of Privilege Vulnerability
nvd
CVE-2023-36697HIGHCVSS 8.0fixed in 10.0.22000.25382023-10-10
CVE-2023-36697 [HIGH] CWE-20 CVE-2023-36697: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-41767HIGHCVSS 8.1fixed in 10.0.22000.25382023-10-10
CVE-2023-41767 [HIGH] CWE-416 CVE-2023-41767: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-38166HIGHCVSS 8.1fixed in 10.0.22000.25382023-10-10
CVE-2023-38166 [HIGH] CWE-416 CVE-2023-38166: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-36574HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36574 [HIGH] CWE-94 CVE-2023-36574: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36567HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36567 [HIGH] CWE-908 CVE-2023-36567: Windows Deployment Services Information Disclosure Vulnerability Windows Deployment Services Information Disclosure Vulnerability
nvd
CVE-2023-36902HIGHCVSS 7.0fixed in 10.0.22000.25382023-10-10
CVE-2023-36902 [HIGH] CWE-416 CVE-2023-36902: Windows Runtime Remote Code Execution Vulnerability Windows Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-44487HIGHCVSS 7.5KEVPoCfixed in 10.0.22000.25382023-10-10
CVE-2023-44487 [HIGH] CWE-400 CVE-2023-44487: The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancell The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
nvd
CVE-2023-36591HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36591 [HIGH] CWE-94 CVE-2023-36591: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36583HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36583 [HIGH] CWE-416 CVE-2023-36583: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36577HIGHCVSS 8.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36577 [HIGH] CWE-122 CVE-2023-36577: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-36721HIGHCVSS 7.0fixed in 10.0.22000.25382023-10-10
CVE-2023-36721 [HIGH] CWE-269 CVE-2023-36721: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2023-36438HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36438 [HIGH] CVE-2023-36438: Windows TCP/IP Information Disclosure Vulnerability Windows TCP/IP Information Disclosure Vulnerability
nvd