Microsoft Windows 11 23H2 vulnerabilities

1,263 known vulnerabilities affecting microsoft/windows_11_23h2.

Total CVEs
1,263
CISA KEV
52
actively exploited
Public exploits
22
Exploited in wild
21
Severity breakdown
CRITICAL15HIGH884MEDIUM358LOW6

Vulnerabilities

Page 44 of 64
CVE-2024-43518HIGHCVSS 8.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43518 [HIGH] CWE-122 CVE-2024-43518: Windows Telephony Server Remote Code Execution Vulnerability Windows Telephony Server Remote Code Execution Vulnerability
nvd
CVE-2024-43528HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43528 [HIGH] CWE-122 CVE-2024-43528: Windows Secure Kernel Mode Elevation of Privilege Vulnerability Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2024-43599HIGHCVSS 8.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43599 [HIGH] CWE-416 CVE-2024-43599: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2024-43615HIGHCVSS 7.1fixed in 10.0.22631.43172024-10-08
CVE-2024-43615 [HIGH] CWE-73 CVE-2024-43615: Microsoft OpenSSH for Windows Remote Code Execution Vulnerability Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
nvd
CVE-2024-43501HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43501 [HIGH] CWE-59 CVE-2024-43501: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43517HIGHCVSS 8.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43517 [HIGH] CWE-122 CVE-2024-43517: Microsoft ActiveX Data Objects Remote Code Execution Vulnerability Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
nvd
CVE-2024-43565HIGHCVSS 7.5fixed in 10.0.22631.43172024-10-08
CVE-2024-43565 [HIGH] CWE-125 CVE-2024-43565: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2024-43514HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43514 [HIGH] CWE-415 CVE-2024-43514: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd
CVE-2024-43562HIGHCVSS 7.5fixed in 10.0.22631.43172024-10-08
CVE-2024-43562 [HIGH] CWE-125 CVE-2024-43562: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2024-43516HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43516 [HIGH] CWE-822 CVE-2024-43516: Windows Secure Kernel Mode Elevation of Privilege Vulnerability Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2024-43529HIGHCVSS 7.3fixed in 10.0.22631.43172024-10-08
CVE-2024-43529 [HIGH] CWE-822 CVE-2024-43529: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2024-43511HIGHCVSS 7.0fixed in 10.0.22631.43172024-10-08
CVE-2024-43511 [HIGH] CWE-367 CVE-2024-43511: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43532HIGHCVSS 8.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43532 [HIGH] CWE-636 CVE-2024-43532: Remote Registry Service Elevation of Privilege Vulnerability Remote Registry Service Elevation of Privilege Vulnerability
nvd
CVE-2024-43509HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43509 [HIGH] CWE-416 CVE-2024-43509: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-43582HIGHCVSS 8.1fixed in 10.0.22631.43172024-10-08
CVE-2024-43582 [HIGH] CWE-416 CVE-2024-43582: Remote Desktop Protocol Server Remote Code Execution Vulnerability Remote Desktop Protocol Server Remote Code Execution Vulnerability
nvd
CVE-2024-43519HIGHCVSS 8.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43519 [HIGH] CWE-197 CVE-2024-43519: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-43581HIGHCVSS 7.1fixed in 10.0.22631.43172024-10-08
CVE-2024-43581 [HIGH] CWE-73 CVE-2024-43581: Microsoft OpenSSH for Windows Remote Code Execution Vulnerability Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
nvd
CVE-2024-43522HIGHCVSS 7.0fixed in 10.0.22631.43172024-10-08
CVE-2024-43522 [HIGH] CWE-122 CVE-2024-43522: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2024-37982HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-37982 [HIGH] CWE-822 CVE-2024-37982: Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
nvd
CVE-2024-43533HIGHCVSS 8.8fixed in 10.0.22631.43172024-10-08
CVE-2024-43533 [HIGH] CWE-416 CVE-2024-43533: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd