Microsoft Windows 11 21H2 vulnerabilities
799 known vulnerabilities affecting microsoft/windows_11_21h2.
Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1
Vulnerabilities
Page 32 of 40
CVE-2022-35759MEDIUMCVSS 6.5fixed in 10.0.22000.8562023-05-31
CVE-2022-35759 [MEDIUM] CVE-2022-35759: Windows Local Security Authority (LSA) Denial of Service Vulnerability
Windows Local Security Authority (LSA) Denial of Service Vulnerability
nvd
CVE-2022-35758MEDIUMCVSS 5.5fixed in 10.0.22000.8562023-05-31
CVE-2022-35758 [MEDIUM] CVE-2022-35758: Windows Kernel Memory Information Disclosure Vulnerability
Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2023-24943CRITICALCVSS 9.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24943 [CRITICAL] CWE-122 CVE-2023-24943: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-24949HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24949 [HIGH] CWE-190 CVE-2023-24949: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-24946HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24946 [HIGH] CWE-591 CVE-2023-24946: Windows Backup Service Elevation of Privilege Vulnerability
Windows Backup Service Elevation of Privilege Vulnerability
nvd
CVE-2023-24940HIGHCVSS 7.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24940 [HIGH] CWE-476 CVE-2023-24940: Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
nvd
CVE-2023-28283HIGHCVSS 8.1fixed in 10.0.22000.19362023-05-09
CVE-2023-28283 [HIGH] CWE-591 CVE-2023-28283: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2023-24905HIGHCVSS 7.8fixed in 10.0.22000.19362023-05-09
CVE-2023-24905 [HIGH] CWE-284 CVE-2023-24905: Remote Desktop Client Remote Code Execution Vulnerability
Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2023-29335HIGHCVSS 7.5fixed in 10.0.22000.19362023-05-09
CVE-2023-29335 [HIGH] CWE-20 CVE-2023-29335: Microsoft Word Security Feature Bypass Vulnerability
Microsoft Word Security Feature Bypass Vulnerability
nvd
CVE-2023-24942HIGHCVSS 7.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24942 [HIGH] CWE-126 CVE-2023-24942: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-24899HIGHCVSS 7.0fixed in 10.0.22000.17022023-05-09
CVE-2023-24899 [HIGH] CWE-591 CVE-2023-24899: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-24948HIGHCVSS 7.4fixed in 10.0.22000.19362023-05-09
CVE-2023-24948 [HIGH] CWE-122 CVE-2023-24948: Windows Bluetooth Driver Elevation of Privilege Vulnerability
Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-24901HIGHCVSS 7.5fixed in 10.0.19044.29652023-05-09
CVE-2023-24901 [HIGH] CWE-126 CVE-2023-24901: Windows NFS Portmapper Information Disclosure Vulnerability
Windows NFS Portmapper Information Disclosure Vulnerability
nvd
CVE-2023-28251MEDIUMCVSS 5.5fixed in 10.0.22000.19362023-05-09
CVE-2023-28251 [MEDIUM] CVE-2023-28251: Windows Driver Revocation List Security Feature Bypass Vulnerability
Windows Driver Revocation List Security Feature Bypass Vulnerability
nvd
CVE-2023-24954MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24954 [MEDIUM] CWE-918 CVE-2023-24954: Microsoft SharePoint Server Information Disclosure Vulnerability
Microsoft SharePoint Server Information Disclosure Vulnerability
nvd
CVE-2023-24944MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24944 [MEDIUM] CWE-843 CVE-2023-24944: Windows Bluetooth Driver Information Disclosure Vulnerability
Windows Bluetooth Driver Information Disclosure Vulnerability
nvd
CVE-2023-29324MEDIUMCVSS 6.5fixed in 10.0.22000.19362023-05-09
CVE-2023-29324 [MEDIUM] CWE-73 CVE-2023-29324: Windows MSHTML Platform Security Feature Bypass Vulnerability
Windows MSHTML Platform Security Feature Bypass Vulnerability
nvd
CVE-2023-24945MEDIUMCVSS 5.5fixed in 10.0.22000.19362023-05-09
CVE-2023-24945 [MEDIUM] CWE-190 CVE-2023-24945: Windows iSCSI Target Service Information Disclosure Vulnerability
Windows iSCSI Target Service Information Disclosure Vulnerability
nvd
CVE-2023-24900MEDIUMCVSS 5.9fixed in 10.0.22000.19362023-05-09
CVE-2023-24900 [MEDIUM] CWE-125 CVE-2023-24900: Windows NTLM Security Support Provider Information Disclosure Vulnerability
Windows NTLM Security Support Provider Information Disclosure Vulnerability
nvd
CVE-2023-21712HIGHCVSS 8.1fixed in 10.0.22000.12192023-04-27
CVE-2023-21712 [HIGH] CWE-362 CVE-2023-21712: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd