Microsoft Windows 11 21H2 vulnerabilities

799 known vulnerabilities affecting microsoft/windows_11_21h2.

Total CVEs
799
CISA KEV
56
actively exploited
Public exploits
18
Exploited in wild
55
Severity breakdown
CRITICAL34HIGH572MEDIUM192LOW1

Vulnerabilities

Page 8 of 40
CVE-2024-38078HIGHCVSS 7.5fixed in 10.0.22000.30792024-07-09
CVE-2024-38078 [HIGH] CWE-416 CVE-2024-38078: Xbox Wireless Adapter Remote Code Execution Vulnerability Xbox Wireless Adapter Remote Code Execution Vulnerability
nvd
CVE-2024-30098HIGHCVSS 7.5fixed in 10.0.22000.30792024-07-09
CVE-2024-30098 [HIGH] CWE-327 CVE-2024-30098: Windows Cryptographic Services Security Feature Bypass Vulnerability Windows Cryptographic Services Security Feature Bypass Vulnerability
nvd
CVE-2024-38080HIGHCVSS 7.8KEVfixed in 10.0.22000.30792024-07-09
CVE-2024-38080 [HIGH] CWE-190 CVE-2024-38080: Windows Hyper-V Elevation of Privilege Vulnerability Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2024-38062HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38062 [HIGH] CWE-125 CVE-2024-38062: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38104HIGHCVSS 8.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38104 [HIGH] CWE-822 CVE-2024-38104: Windows Fax Service Remote Code Execution Vulnerability Windows Fax Service Remote Code Execution Vulnerability
nvd
CVE-2024-30013HIGHCVSS 8.8fixed in 10.0.22000.30792024-07-09
CVE-2024-30013 [HIGH] CWE-415 CVE-2024-30013: Windows MultiPoint Services Remote Code Execution Vulnerability Windows MultiPoint Services Remote Code Execution Vulnerability
nvd
CVE-2024-38053HIGHCVSS 8.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38053 [HIGH] CWE-416 CVE-2024-38053: Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability
nvd
CVE-2024-38049HIGHCVSS 8.1fixed in 10.0.22000.30792024-07-09
CVE-2024-38049 [HIGH] CWE-73 CVE-2024-38049: Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
nvd
CVE-2024-38051HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38051 [HIGH] CWE-122 CVE-2024-38051: Windows Graphics Component Remote Code Execution Vulnerability Windows Graphics Component Remote Code Execution Vulnerability
nvd
CVE-2024-38025HIGHCVSS 7.2fixed in 10.0.22000.30792024-07-09
CVE-2024-38025 [HIGH] CWE-122 CVE-2024-38025: Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
nvd
CVE-2024-38054HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38054 [HIGH] CWE-122 CVE-2024-38054: Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38069HIGHCVSS 7.0fixed in 10.0.22000.30792024-07-09
CVE-2024-38069 [HIGH] CWE-347 CVE-2024-38069: Windows Enroll Engine Security Feature Bypass Vulnerability Windows Enroll Engine Security Feature Bypass Vulnerability
nvd
CVE-2024-38068HIGHCVSS 7.5fixed in 10.0.22000.30792024-07-09
CVE-2024-38068 [HIGH] CWE-400 CVE-2024-38068: Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
nvd
CVE-2024-38085HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38085 [HIGH] CWE-416 CVE-2024-38085: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-38050HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38050 [HIGH] CWE-191 CVE-2024-38050: Windows Workstation Service Elevation of Privilege Vulnerability Windows Workstation Service Elevation of Privilege Vulnerability
nvd
CVE-2024-38070HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38070 [HIGH] CWE-693 CVE-2024-38070: Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability
nvd
CVE-2024-30079HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-30079 [HIGH] CWE-126 CVE-2024-30079: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2024-38066HIGHCVSS 7.8fixed in 10.0.22000.30792024-07-09
CVE-2024-38066 [HIGH] CWE-416 CVE-2024-38066: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2024-38041MEDIUMCVSS 5.5fixed in 10.0.22000.30792024-07-09
CVE-2024-38041 [MEDIUM] CWE-200 CVE-2024-38041: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2024-38013MEDIUMCVSS 6.7fixed in 10.0.22000.30792024-07-09
CVE-2024-38013 [MEDIUM] CWE-59 CVE-2024-38013: Microsoft Windows Server Backup Elevation of Privilege Vulnerability Microsoft Windows Server Backup Elevation of Privilege Vulnerability
nvd