Microsoft Windows 11 21H2 vulnerabilities
799 known vulnerabilities affecting microsoft/windows_11_21h2.
Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
34
Exploited in wild
63
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1
Vulnerabilities
Page 33 of 40
CVE-2024-43526P4MEDIUMCVSS 6.8fixed in 10.0.22000.32602024-10-08
CVE-2024-43526 [MEDIUM] CWE-20 CVE-2024-43526: Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-43543P4MEDIUMCVSS 6.8fixed in 10.0.22000.32602024-10-08
CVE-2024-43543 [MEDIUM] CWE-601 CVE-2024-43543: Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-43536P4MEDIUMCVSS 6.8fixed in 10.0.22000.32602024-10-08
CVE-2024-43536 [MEDIUM] CWE-601 CVE-2024-43536: Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-21431P4MEDIUMCVSS 6.7fixed in 10.0.22000.28362024-03-12
CVE-2024-21431 [MEDIUM] CWE-732 CVE-2024-21431: Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability
Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability
nvd
CVE-2024-26209P4MEDIUMCVSS 5.5fixed in 10.0.22000.28992024-04-09
CVE-2024-26209 [MEDIUM] CWE-908 CVE-2024-26209: Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
nvd
CVE-2023-1018P4MEDIUMCVSS 5.5fixed in 10.0.22000.16962023-02-28
CVE-2023-1018 [MEDIUM] CWE-125 CVE-2023-1018: An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past th
An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.
nvd
CVE-2024-21356P4MEDIUMCVSS 6.5fixed in 10.0.22000.27772024-02-13
CVE-2024-21356 [MEDIUM] CWE-476 CVE-2024-21356: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2023-35329P4MEDIUMCVSS 6.5fixed in 10.0.22000.21762023-07-11
CVE-2023-35329 [MEDIUM] CWE-400 CVE-2023-35329: Windows Authentication Denial of Service Vulnerability
Windows Authentication Denial of Service Vulnerability
nvd
CVE-2024-20657P4HIGHCVSS 7.0fixed in 10.0.22000.27132024-01-09
CVE-2024-20657 [HIGH] CWE-284 CVE-2024-20657: Windows Group Policy Elevation of Privilege Vulnerability
Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2023-21739P4HIGHCVSS 7.0fixed in 10.0.22000.14552023-01-10
CVE-2023-21739 [HIGH] CWE-591 CVE-2023-21739: Windows Bluetooth Driver Elevation of Privilege Vulnerability
Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36902P4HIGHCVSS 7.0fixed in 10.0.22000.25382023-10-10
CVE-2023-36902 [HIGH] CWE-416 CVE-2023-36902: Windows Runtime Remote Code Execution Vulnerability
Windows Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-28221P4HIGHCVSS 7.0fixed in 10.0.22000.18172023-04-11
CVE-2023-28221 [HIGH] CWE-200 CVE-2023-28221: Windows Error Reporting Service Elevation of Privilege Vulnerability
Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21341P4MEDIUMCVSS 6.8fixed in 10.0.22000.27772024-02-13
CVE-2024-21341 [MEDIUM] CWE-122 CVE-2024-21341: Windows Kernel Remote Code Execution Vulnerability
Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2023-36721P4HIGHCVSS 7.0fixed in 10.0.22000.25382023-10-10
CVE-2023-36721 [HIGH] CWE-269 CVE-2023-36721: Windows Error Reporting Service Elevation of Privilege Vulnerability
Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21429P4MEDIUMCVSS 6.8fixed in 10.0.22000.28362024-03-12
CVE-2024-21429 [MEDIUM] CWE-197 CVE-2024-21429: Windows USB Hub Driver Remote Code Execution Vulnerability
Windows USB Hub Driver Remote Code Execution Vulnerability
nvd
CVE-2024-21405P4HIGHCVSS 7.0fixed in 10.0.22000.27772024-02-13
CVE-2024-21405 [HIGH] CWE-591 CVE-2024-21405: Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
nvd
CVE-2023-35378P4HIGHCVSS 7.0fixed in 10.0.22000.22952023-08-08
CVE-2023-35378 [HIGH] CWE-367 CVE-2023-35378: Windows Projected File System Elevation of Privilege Vulnerability
Windows Projected File System Elevation of Privilege Vulnerability
nvd
CVE-2023-24899P4HIGHCVSS 7.0fixed in 10.0.22000.17022023-05-09
CVE-2023-24899 [HIGH] CWE-591 CVE-2023-24899: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-21355P4HIGHCVSS 7.0fixed in 10.0.22000.27772024-02-13
CVE-2024-21355 [HIGH] CWE-591 CVE-2024-21355: Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
nvd
CVE-2023-24861P4HIGHCVSS 7.0fixed in 10.0.22000.16962023-03-14
CVE-2023-24861 [HIGH] CWE-367 CVE-2023-24861: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd