Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 33 of 40
CVE-2023-21554CRITICALCVSS 9.8PoCfixed in 10.0.22000.18172023-04-11
CVE-2023-21554 [CRITICAL] CWE-20 CVE-2023-21554: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-28250CRITICALCVSS 9.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28250 [CRITICAL] CWE-191 CVE-2023-28250: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-28302HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28302 [HIGH] CWE-20 CVE-2023-28302: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-28248HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28248 [HIGH] CWE-190 CVE-2023-28248: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-28252HIGHCVSS 7.8KEVPoCfixed in 10.0.22000.18172023-04-11
CVE-2023-28252 [HIGH] CWE-122 CVE-2023-28252: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-28232HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28232 [HIGH] CWE-362 CVE-2023-28232: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-21769HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-21769 [HIGH] CWE-125 CVE-2023-21769: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-28293HIGHCVSS 7.8PoCfixed in 10.0.22621.15552023-04-11
CVE-2023-28293 [HIGH] CWE-191 CVE-2023-28293: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-28227HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28227 [HIGH] CWE-122 CVE-2023-28227: Windows Bluetooth Driver Remote Code Execution Vulnerability Windows Bluetooth Driver Remote Code Execution Vulnerability
nvd
CVE-2023-24886HIGHCVSS 8.8fixed in 10.0.22000.18172023-04-11
CVE-2023-24886 [HIGH] CWE-908 CVE-2023-24886: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28233HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28233 [HIGH] CVE-2023-28233: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2023-28221HIGHCVSS 7.0fixed in 10.0.22000.18172023-04-11
CVE-2023-28221 [HIGH] CWE-200 CVE-2023-28221: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2023-28273HIGHCVSS 7.0fixed in 10.0.22000.18172023-04-11
CVE-2023-28273 [HIGH] CWE-591 CVE-2023-28273: Windows Clip Service Elevation of Privilege Vulnerability Windows Clip Service Elevation of Privilege Vulnerability
nvd
CVE-2023-28238HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28238 [HIGH] CWE-591 CVE-2023-28238: Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
nvd
CVE-2023-28217HIGHCVSS 7.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28217 [HIGH] CWE-400 CVE-2023-28217: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2023-28220HIGHCVSS 8.1fixed in 10.0.22000.18172023-04-11
CVE-2023-28220 [HIGH] CWE-591 CVE-2023-28220: Layer 2 Tunneling Protocol Remote Code Execution Vulnerability Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2023-28272HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28272 [HIGH] CWE-191 CVE-2023-28272: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-24925HIGHCVSS 8.8fixed in 10.0.22000.18172023-04-11
CVE-2023-24925 [HIGH] CWE-416 CVE-2023-24925: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28236HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28236 [HIGH] CWE-591 CVE-2023-28236: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-28246HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28246 [HIGH] CWE-284 CVE-2023-28246: Windows Registry Elevation of Privilege Vulnerability Windows Registry Elevation of Privilege Vulnerability
nvd