Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 32 of 40
CVE-2022-35759MEDIUMCVSS 6.5fixed in 10.0.22000.8562023-05-31
CVE-2022-35759 [MEDIUM] CVE-2022-35759: Windows Local Security Authority (LSA) Denial of Service Vulnerability Windows Local Security Authority (LSA) Denial of Service Vulnerability
nvd
CVE-2022-35758MEDIUMCVSS 5.5fixed in 10.0.22000.8562023-05-31
CVE-2022-35758 [MEDIUM] CVE-2022-35758: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2023-24943CRITICALCVSS 9.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24943 [CRITICAL] CWE-122 CVE-2023-24943: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-24949HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24949 [HIGH] CWE-190 CVE-2023-24949: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-24946HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24946 [HIGH] CWE-591 CVE-2023-24946: Windows Backup Service Elevation of Privilege Vulnerability Windows Backup Service Elevation of Privilege Vulnerability
nvd
CVE-2023-24940HIGHCVSS 7.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24940 [HIGH] CWE-476 CVE-2023-24940: Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
nvd
CVE-2023-28283HIGHCVSS 8.1fixed in 10.0.22000.19362023-05-09
CVE-2023-28283 [HIGH] CWE-591 CVE-2023-28283: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2023-24905HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24905 [HIGH] CWE-284 CVE-2023-24905: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2023-29335HIGHCVSS 7.5fixed in 10.0.22000.19362023-05-09
CVE-2023-29335 [HIGH] CWE-20 CVE-2023-29335: Microsoft Word Security Feature Bypass Vulnerability Microsoft Word Security Feature Bypass Vulnerability
nvd
CVE-2023-24942HIGHCVSS 7.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24942 [HIGH] CWE-126 CVE-2023-24942: Remote Procedure Call Runtime Denial of Service Vulnerability Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-24899HIGHCVSS 7.0fixed in 10.0.22000.17022023-05-09
CVE-2023-24899 [HIGH] CWE-591 CVE-2023-24899: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-24948HIGHCVSS 7.4fixed in 10.0.22000.19362023-05-09
CVE-2023-24948 [HIGH] CWE-122 CVE-2023-24948: Windows Bluetooth Driver Elevation of Privilege Vulnerability Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-24901HIGHCVSS 7.5fixed in 10.0.19044.29652023-05-09
CVE-2023-24901 [HIGH] CWE-126 CVE-2023-24901: Windows NFS Portmapper Information Disclosure Vulnerability Windows NFS Portmapper Information Disclosure Vulnerability
nvd
CVE-2023-28251MEDIUMCVSS 5.5fixed in 10.0.22000.19362023-05-09
CVE-2023-28251 [MEDIUM] CVE-2023-28251: Windows Driver Revocation List Security Feature Bypass Vulnerability Windows Driver Revocation List Security Feature Bypass Vulnerability
nvd
CVE-2023-24954MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24954 [MEDIUM] CWE-918 CVE-2023-24954: Microsoft SharePoint Server Information Disclosure Vulnerability Microsoft SharePoint Server Information Disclosure Vulnerability
nvd
CVE-2023-24944MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24944 [MEDIUM] CWE-843 CVE-2023-24944: Windows Bluetooth Driver Information Disclosure Vulnerability Windows Bluetooth Driver Information Disclosure Vulnerability
nvd
CVE-2023-29324MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-29324 [MEDIUM] CWE-73 CVE-2023-29324: Windows MSHTML Platform Security Feature Bypass Vulnerability Windows MSHTML Platform Security Feature Bypass Vulnerability
nvd
CVE-2023-24945MEDIUMCVSS 5.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24945 [MEDIUM] CWE-190 CVE-2023-24945: Windows iSCSI Target Service Information Disclosure Vulnerability Windows iSCSI Target Service Information Disclosure Vulnerability
nvd
CVE-2023-24900MEDIUMCVSS 5.9fixed in 10.0.22000.19362023-05-09
CVE-2023-24900 [MEDIUM] CWE-125 CVE-2023-24900: Windows NTLM Security Support Provider Information Disclosure Vulnerability Windows NTLM Security Support Provider Information Disclosure Vulnerability
nvd
CVE-2023-21712HIGHCVSS 8.1fixed in 10.0.22000.12192023-04-27
CVE-2023-21712 [HIGH] CWE-362 CVE-2023-21712: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd