Microsoft Windows 11 21H2 vulnerabilities
799 known vulnerabilities affecting microsoft/windows_11_21h2.
Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1
Vulnerabilities
Page 35 of 40
CVE-2023-24884HIGHCVSS 8.8fixed in 10.0.22000.18172023-04-11
CVE-2023-24884 [HIGH] CWE-681 CVE-2023-24884: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-28274HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28274 [HIGH] CWE-20 CVE-2023-28274: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-28237HIGHCVSS 7.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28237 [HIGH] CWE-190 CVE-2023-28237: Windows Kernel Remote Code Execution Vulnerability
Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2023-28276MEDIUMCVSS 4.4fixed in 10.0.22000.18172023-04-11
CVE-2023-28276 [MEDIUM] CVE-2023-28276: Windows Group Policy Security Feature Bypass Vulnerability
Windows Group Policy Security Feature Bypass Vulnerability
nvd
CVE-2023-21729MEDIUMCVSS 5.3fixed in 10.0.22000.18172023-04-11
CVE-2023-21729 [MEDIUM] CWE-125 CVE-2023-21729: Remote Procedure Call Runtime Information Disclosure Vulnerability
Remote Procedure Call Runtime Information Disclosure Vulnerability
nvd
CVE-2023-28271MEDIUMCVSS 5.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28271 [MEDIUM] CWE-200 CVE-2023-28271: Windows Kernel Memory Information Disclosure Vulnerability
Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2023-28226MEDIUMCVSS 5.3fixed in 10.0.22000.18172023-04-11
CVE-2023-28226 [MEDIUM] CWE-347 CVE-2023-28226: Windows Enroll Engine Security Feature Bypass Vulnerability
Windows Enroll Engine Security Feature Bypass Vulnerability
nvd
CVE-2023-24883MEDIUMCVSS 6.5fixed in 10.0.22000.18172023-04-11
CVE-2023-24883 [MEDIUM] CWE-126 CVE-2023-24883: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2023-28269MEDIUMCVSS 6.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28269 [MEDIUM] CWE-122 CVE-2023-28269: Windows Boot Manager Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
nvd
CVE-2023-28266MEDIUMCVSS 5.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28266 [MEDIUM] CWE-126 CVE-2023-28266: Windows Common Log File System Driver Information Disclosure Vulnerability
Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2023-28253MEDIUMCVSS 5.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28253 [MEDIUM] CVE-2023-28253: Windows Kernel Information Disclosure Vulnerability
Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2023-28249MEDIUMCVSS 6.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28249 [MEDIUM] CWE-863 CVE-2023-28249: Windows Boot Manager Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
nvd
CVE-2023-28270MEDIUMCVSS 6.8fixed in 10.0.22000.18172023-04-11
CVE-2023-28270 [MEDIUM] CWE-863 CVE-2023-28270: Windows Lock Screen Security Feature Bypass Vulnerability
Windows Lock Screen Security Feature Bypass Vulnerability
nvd
CVE-2023-28267MEDIUMCVSS 6.5fixed in 10.0.22000.18172023-04-11
CVE-2023-28267 [MEDIUM] CWE-126 CVE-2023-28267: Remote Desktop Protocol Client Information Disclosure Vulnerability
Remote Desktop Protocol Client Information Disclosure Vulnerability
nvd
CVE-2023-23392CRITICALCVSS 9.8fixed in 10.0.22000.16962023-03-14
CVE-2023-23392 [CRITICAL] CWE-416 CVE-2023-23392: HTTP Protocol Stack Remote Code Execution Vulnerability
HTTP Protocol Stack Remote Code Execution Vulnerability
nvd
CVE-2023-23415CRITICALCVSS 9.8fixed in 10.0.22000.16962023-03-14
CVE-2023-23415 [CRITICAL] CWE-122 CVE-2023-23415: Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability
Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability
nvd
CVE-2023-21708CRITICALCVSS 9.8fixed in 10.0.22000.16962023-03-14
CVE-2023-21708 [CRITICAL] CWE-191 CVE-2023-21708: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-23422HIGHCVSS 7.8fixed in 10.0.22000.16962023-03-14
CVE-2023-23422 [HIGH] CVE-2023-23422: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-23388HIGHCVSS 8.8fixed in 10.0.22000.16962023-03-14
CVE-2023-23388 [HIGH] CWE-681 CVE-2023-23388: Windows Bluetooth Driver Elevation of Privilege Vulnerability
Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-24909HIGHCVSS 8.8fixed in 10.0.22000.16962023-03-14
CVE-2023-24909 [HIGH] CWE-190 CVE-2023-24909: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd