cbcvebase.

Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
34
Exploited in wild
63
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 29 of 40
CVE-2023-35338P3HIGHCVSS 7.5fixed in 10.0.22000.21762023-07-11
CVE-2023-35338 [HIGH] CWE-476 CVE-2023-35338: Windows Peer Name Resolution Protocol Denial of Service Vulnerability Windows Peer Name Resolution Protocol Denial of Service Vulnerability
nvd
CVE-2023-32011P3HIGHCVSS 7.5fixed in 10.0.22000.20572023-06-14
CVE-2023-32011 [HIGH] CWE-125 CVE-2023-32011: Windows iSCSI Discovery Service Denial of Service Vulnerability Windows iSCSI Discovery Service Denial of Service Vulnerability
nvd
CVE-2023-28217P3HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28217 [HIGH] CWE-400 CVE-2023-28217: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2023-36912P3HIGHCVSS 7.5fixed in 10.0.22000.22952023-08-08
CVE-2023-36912 [HIGH] CWE-20 CVE-2023-36912: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-28233P3HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28233 [HIGH] CVE-2023-28233: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2023-28234P3HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28234 [HIGH] CVE-2023-28234: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2023-24859P3HIGHCVSS 7.5fixed in 10.0.22000.16962023-03-14
CVE-2023-24859 [HIGH] CWE-476 CVE-2023-24859: Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
nvd
CVE-2023-21813P3HIGHCVSS 7.5fixed in 10.0.22000.15742023-02-14
CVE-2023-21813 [HIGH] CWE-126 CVE-2023-21813: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2023-32044P3HIGHCVSS 7.5fixed in 10.0.22000.21762023-07-11
CVE-2023-32044 [HIGH] CWE-125 CVE-2023-32044: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-32045P3HIGHCVSS 7.5fixed in 10.0.22000.21762023-07-11
CVE-2023-32045 [HIGH] CWE-125 CVE-2023-32045: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36805P4HIGHCVSS 7.0fixed in 10.0.22000.24162023-09-12
CVE-2023-36805 [HIGH] CWE-77 CVE-2023-36805: Windows MSHTML Platform Security Feature Bypass Vulnerability Windows MSHTML Platform Security Feature Bypass Vulnerability
nvd
CVE-2024-38032P3HIGHCVSS 7.1fixed in 10.0.22000.30792024-07-09
CVE-2024-38032 [HIGH] CWE-122 CVE-2024-38032: Microsoft Xbox Remote Code Execution Vulnerability Microsoft Xbox Remote Code Execution Vulnerability
nvd
CVE-2024-30099P4HIGHCVSS 7.0fixed in 10.0.22000.30192024-06-11
CVE-2024-30099 [HIGH] CWE-367 CVE-2024-30099: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-24954P4MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24954 [MEDIUM] CWE-918 CVE-2023-24954: Microsoft SharePoint Server Information Disclosure Vulnerability Microsoft SharePoint Server Information Disclosure Vulnerability
nvd
CVE-2023-35384P4MEDIUMCVSS 6.5fixed in 10.0.22000.22952023-08-08
CVE-2023-35384 [MEDIUM] CWE-73 CVE-2023-35384: Windows HTML Platforms Security Feature Bypass Vulnerability Windows HTML Platforms Security Feature Bypass Vulnerability
nvd
CVE-2023-29352P4MEDIUMCVSS 6.5fixed in 10.0.22000.20572023-06-14
CVE-2023-29352 [MEDIUM] CVE-2023-29352: Windows Remote Desktop Security Feature Bypass Vulnerability Windows Remote Desktop Security Feature Bypass Vulnerability
nvd
CVE-2023-35308P3MEDIUMCVSS 6.5fixed in 10.0.22000.21762023-07-11
CVE-2023-35308 [MEDIUM] CWE-73 CVE-2023-35308: Windows MSHTML Platform Security Feature Bypass Vulnerability Windows MSHTML Platform Security Feature Bypass Vulnerability
nvd
CVE-2022-40733P4MEDIUMCVSS 6.5v10.0.22000.5932024-12-18
CVE-2022-40733 [MEDIUM] CWE-476 CVE-2022-40733: An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys drive An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000.593 as part of Windows 11 version 22000.593 and version 10.0.20348.643 as part of Windows Server 2022 version 20348.643. A specially-crafted set of syscalls can lead to a reboot. An unprivileged user can run specially-crafted code
nvd
CVE-2023-35330P4HIGHCVSS 7.5fixed in 10.0.22000.21762023-07-11
CVE-2023-35330 [HIGH] CWE-126 CVE-2023-35330: Windows Extended Negotiation Denial of Service Vulnerability Windows Extended Negotiation Denial of Service Vulnerability
nvd
CVE-2023-21811P3HIGHCVSS 7.5fixed in 10.0.22000.15742023-02-14
CVE-2023-21811 [HIGH] CWE-126 CVE-2023-21811: Windows iSCSI Service Denial of Service Vulnerability Windows iSCSI Service Denial of Service Vulnerability
nvd
Microsoft Windows 11 21H2 vulnerabilities | cvebase