Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 22 of 40
CVE-2023-36594HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36594 [HIGH] CWE-843 CVE-2023-36594: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-36701HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36701 [HIGH] CWE-125 CVE-2023-36701: Microsoft Resilient File System (ReFS) Elevation of Privilege Vulnerability Microsoft Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd
CVE-2023-36571HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36571 [HIGH] CWE-94 CVE-2023-36571: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36436HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36436 [HIGH] CVE-2023-36436: Windows MSHTML Platform Remote Code Execution Vulnerability Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2023-36596HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36596 [HIGH] CWE-822 CVE-2023-36596: Remote Procedure Call Information Disclosure Vulnerability Remote Procedure Call Information Disclosure Vulnerability
nvd
CVE-2023-36711HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36711 [HIGH] CWE-59 CVE-2023-36711: Windows Runtime C++ Template Library Elevation of Privilege Vulnerability Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
nvd
CVE-2023-36720HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36720 [HIGH] CVE-2023-36720: Windows Mixed Reality Developer Tools Denial of Service Vulnerability Windows Mixed Reality Developer Tools Denial of Service Vulnerability
nvd
CVE-2023-36590HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36590 [HIGH] CVE-2023-36590: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36710HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36710 [HIGH] CWE-197 CVE-2023-36710: Windows Media Foundation Core Remote Code Execution Vulnerability Windows Media Foundation Core Remote Code Execution Vulnerability
nvd
CVE-2023-36598HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36598 [HIGH] CWE-122 CVE-2023-36598: Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2023-36702HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36702 [HIGH] CWE-94 CVE-2023-36702: Microsoft DirectMusic Remote Code Execution Vulnerability Microsoft DirectMusic Remote Code Execution Vulnerability
nvd
CVE-2023-36723HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36723 [HIGH] CWE-59 CVE-2023-36723: Windows Container Manager Service Elevation of Privilege Vulnerability Windows Container Manager Service Elevation of Privilege Vulnerability
nvd
CVE-2023-41768HIGHCVSS 8.1fixed in 10.0.22000.25382023-10-10
CVE-2023-41768 [HIGH] CWE-416 CVE-2023-41768: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-41771HIGHCVSS 8.1fixed in 10.0.22000.25382023-10-10
CVE-2023-41771 [HIGH] CWE-416 CVE-2023-41771: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-36709HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36709 [HIGH] CWE-476 CVE-2023-36709: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2023-41773HIGHCVSS 8.1fixed in 10.0.22000.25382023-10-10
CVE-2023-41773 [HIGH] CWE-416 CVE-2023-41773: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-36585HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36585 [HIGH] CWE-20 CVE-2023-36585: Windows upnphost.dll Denial of Service Vulnerability Windows upnphost.dll Denial of Service Vulnerability
nvd
CVE-2023-36573HIGHCVSS 7.3fixed in 10.0.22000.25382023-10-10
CVE-2023-36573 [HIGH] CWE-94 CVE-2023-36573: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-41774HIGHCVSS 8.1fixed in 10.0.22000.25382023-10-10
CVE-2023-41774 [HIGH] CWE-416 CVE-2023-41774: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-36712HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36712 [HIGH] CVE-2023-36712: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd