Microsoft Windows 11 23H2 vulnerabilities

1,263 known vulnerabilities affecting microsoft/windows_11_23h2.

Total CVEs
1,263
CISA KEV
52
actively exploited
Public exploits
22
Exploited in wild
21
Severity breakdown
CRITICAL15HIGH884MEDIUM358LOW6

Vulnerabilities

Page 55 of 64
CVE-2024-30008MEDIUMCVSS 5.5fixed in 10.0.22631.35932024-05-14
CVE-2024-30008 [MEDIUM] CWE-191 CVE-2024-30008: Windows DWM Core Library Information Disclosure Vulnerability Windows DWM Core Library Information Disclosure Vulnerability
nvd
CVE-2024-30002MEDIUMCVSS 6.8fixed in 10.0.22631.35932024-05-14
CVE-2024-30002 [MEDIUM] CWE-20 CVE-2024-30002: Windows Mobile Broadband Driver Remote Code Execution Vulnerability Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-30000MEDIUMCVSS 6.8fixed in 10.0.22631.35932024-05-14
CVE-2024-30000 [MEDIUM] CWE-190 CVE-2024-30000: Windows Mobile Broadband Driver Remote Code Execution Vulnerability Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-29998MEDIUMCVSS 6.8fixed in 10.0.22631.35932024-05-14
CVE-2024-29998 [MEDIUM] CWE-20 CVE-2024-29998: Windows Mobile Broadband Driver Remote Code Execution Vulnerability Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-30050MEDIUMCVSS 5.4fixed in 10.0.22631.35932024-05-14
CVE-2024-30050 [MEDIUM] CWE-693 CVE-2024-30050: Windows Mark of the Web Security Feature Bypass Vulnerability Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2024-30005MEDIUMCVSS 6.8fixed in 10.0.22631.35932024-05-14
CVE-2024-30005 [MEDIUM] CWE-190 CVE-2024-30005: Windows Mobile Broadband Driver Remote Code Execution Vulnerability Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-29997MEDIUMCVSS 6.8fixed in 10.0.22631.35932024-05-14
CVE-2024-29997 [MEDIUM] CWE-190 CVE-2024-29997: Windows Mobile Broadband Driver Remote Code Execution Vulnerability Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-29999MEDIUMCVSS 6.8fixed in 10.0.22631.35932024-05-14
CVE-2024-29999 [MEDIUM] CWE-190 CVE-2024-29999: Windows Mobile Broadband Driver Remote Code Execution Vulnerability Windows Mobile Broadband Driver Remote Code Execution Vulnerability
nvd
CVE-2024-26210HIGHCVSS 8.8fixed in 10.0.22631.34472024-04-09
CVE-2024-26210 [HIGH] CWE-122 CVE-2024-26210: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-26237HIGHCVSS 7.8fixed in 10.0.22631.34472024-04-09
CVE-2024-26237 [HIGH] CWE-416 CVE-2024-26237: Windows Defender Credential Guard Elevation of Privilege Vulnerability Windows Defender Credential Guard Elevation of Privilege Vulnerability
nvd
CVE-2024-20693HIGHCVSS 7.8fixed in 10.0.22631.34472024-04-09
CVE-2024-20693 [HIGH] CWE-426 CVE-2024-20693: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26208HIGHCVSS 7.2fixed in 10.0.22631.34472024-04-09
CVE-2024-26208 [HIGH] CWE-191 CVE-2024-26208: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-26228HIGHCVSS 7.8fixed in 10.0.22631.34472024-04-09
CVE-2024-26228 [HIGH] CWE-310 CVE-2024-26228: Windows Cryptographic Services Security Feature Bypass Vulnerability Windows Cryptographic Services Security Feature Bypass Vulnerability
nvd
CVE-2024-26214HIGHCVSS 8.8fixed in 10.0.22631.34472024-04-09
CVE-2024-26214 [HIGH] CWE-122 CVE-2024-26214: Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-29988HIGHCVSS 8.8KEVfixed in 10.0.22631.34472024-04-09
CVE-2024-29988 [HIGH] CWE-693 CVE-2024-29988: SmartScreen Prompt Security Feature Bypass Vulnerability SmartScreen Prompt Security Feature Bypass Vulnerability
nvd
CVE-2024-26205HIGHCVSS 8.8fixed in 10.0.22631.34472024-04-09
CVE-2024-26205 [HIGH] CWE-122 CVE-2024-26205: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-29052HIGHCVSS 7.8fixed in 10.0.22631.34472024-04-09
CVE-2024-29052 [HIGH] CWE-269 CVE-2024-29052: Windows Storage Elevation of Privilege Vulnerability Windows Storage Elevation of Privilege Vulnerability
nvd
CVE-2024-26239HIGHCVSS 7.8fixed in 10.0.22631.34472024-04-09
CVE-2024-26239 [HIGH] CWE-122 CVE-2024-26239: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2024-26254HIGHCVSS 7.5fixed in 10.0.22631.34472024-04-09
CVE-2024-26254 [HIGH] CWE-822 CVE-2024-26254: Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability
nvd
CVE-2024-21447HIGHCVSS 7.8fixed in 10.0.22631.34472024-04-09
CVE-2024-21447 [HIGH] CWE-59 CVE-2024-21447: Windows Authentication Elevation of Privilege Vulnerability Windows Authentication Elevation of Privilege Vulnerability
nvd