cbcvebase.

Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
34
Exploited in wild
63
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 24 of 40
CVE-2023-24905P3HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24905 [HIGH] CWE-284 CVE-2023-24905: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2023-36711P3HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36711 [HIGH] CWE-59 CVE-2023-36711: Windows Runtime C++ Template Library Elevation of Privilege Vulnerability Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
nvd
CVE-2023-35313P3HIGHCVSS 7.8fixed in 10.0.22000.21762023-07-11
CVE-2023-35313 [HIGH] CWE-416 CVE-2023-35313: Windows Online Certificate Status Protocol (OCSP) SnapIn Remote Code Execution Vulnerability Windows Online Certificate Status Protocol (OCSP) SnapIn Remote Code Execution Vulnerability
nvd
CVE-2023-36399P3HIGHCVSS 7.1fixed in 10.0.22000.26002023-11-14
CVE-2023-36399 [HIGH] CWE-59 CVE-2023-36399: Windows Storage Elevation of Privilege Vulnerability Windows Storage Elevation of Privilege Vulnerability
nvd
CVE-2023-36605P3HIGHCVSS 7.8fixed in 10.0.22000.25382023-10-10
CVE-2023-36605 [HIGH] CWE-416 CVE-2023-36605: Windows Named Pipe Filesystem Elevation of Privilege Vulnerability Windows Named Pipe Filesystem Elevation of Privilege Vulnerability
nvd
CVE-2023-35342P3HIGHCVSS 7.8fixed in 10.0.22000.21762023-07-11
CVE-2023-35342 [HIGH] CWE-59 CVE-2023-35342: Windows Image Acquisition Elevation of Privilege Vulnerability Windows Image Acquisition Elevation of Privilege Vulnerability
nvd
CVE-2023-35312P3HIGHCVSS 7.8fixed in 10.0.22000.21762023-07-11
CVE-2023-35312 [HIGH] CWE-190 CVE-2023-35312: Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability
nvd
CVE-2023-32053P3HIGHCVSS 7.8fixed in 10.0.22000.21762023-07-11
CVE-2023-32053 [HIGH] CWE-59 CVE-2023-32053: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2023-24946P3HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24946 [HIGH] CWE-591 CVE-2023-24946: Windows Backup Service Elevation of Privilege Vulnerability Windows Backup Service Elevation of Privilege Vulnerability
nvd
CVE-2023-23417P3HIGHCVSS 7.8fixed in 10.0.22000.16962023-03-14
CVE-2023-23417 [HIGH] CWE-190 CVE-2023-23417: Windows Partition Management Driver Elevation of Privilege Vulnerability Windows Partition Management Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-28236P3HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28236 [HIGH] CWE-591 CVE-2023-28236: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-35362P3HIGHCVSS 7.8fixed in 10.0.22000.21762023-07-11
CVE-2023-35362 [HIGH] CWE-591 CVE-2023-35362: Windows Clip Service Elevation of Privilege Vulnerability Windows Clip Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35340P3HIGHCVSS 7.8fixed in 10.0.22000.21762023-07-11
CVE-2023-35340 [HIGH] CWE-591 CVE-2023-35340: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2022-40732P3HIGHCVSS 7.5v10.0.22000.5932024-12-18
CVE-2022-40732 [HIGH] CWE-476 CVE-2022-40732: An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys drive An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000.593 as part of Windows 11 version 22000.593 and version 10.0.20348.643 as part of Windows Server 2022 version 20348.643. A specially-crafted set of syscalls can lead to a reboot. An unprivileged user can run specially-crafted code t
nvd
CVE-2024-26232P3HIGHCVSS 7.3fixed in 10.0.22000.28992024-04-09
CVE-2024-26232 [HIGH] CWE-843 CVE-2024-26232: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-43581P3HIGHCVSS 7.1fixed in 10.0.22000.32602024-10-08
CVE-2024-43581 [HIGH] CWE-73 CVE-2024-43581: Microsoft OpenSSH for Windows Remote Code Execution Vulnerability Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
nvd
CVE-2024-30076P3MEDIUMCVSS 6.8fixed in 10.0.22000.30192024-06-11
CVE-2024-30076 [MEDIUM] CWE-59 CVE-2024-30076: Windows Container Manager Service Elevation of Privilege Vulnerability Windows Container Manager Service Elevation of Privilege Vulnerability
nvd
CVE-2024-30084P3HIGHCVSS 7.0fixed in 10.0.22000.30192024-06-11
CVE-2024-30084 [HIGH] CWE-367 CVE-2024-30084: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-21438P3HIGHCVSS 7.5fixed in 10.0.22000.28992024-03-12
CVE-2024-21438 [HIGH] CWE-369 CVE-2024-21438: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2023-36709P3HIGHCVSS 7.5fixed in 10.0.22000.25382023-10-10
CVE-2023-36709 [HIGH] CWE-476 CVE-2023-36709: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
Microsoft Windows 11 21H2 vulnerabilities | cvebase