Microsoft Windows 11 24H2 vulnerabilities

1,030 known vulnerabilities affecting microsoft/windows_11_24h2.

Total CVEs
1,030
CISA KEV
38
actively exploited
Public exploits
18
Exploited in wild
8
Severity breakdown
CRITICAL14HIGH716MEDIUM296LOW4

Vulnerabilities

Page 43 of 52
CVE-2024-49090HIGHCVSS 7.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49090 [HIGH] CWE-822 CVE-2024-49090: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-49089HIGHCVSS 7.2fixed in 10.0.26100.26052024-12-12
CVE-2024-49089 [HIGH] CWE-122 CVE-2024-49089: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49104HIGHCVSS 8.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49104 [HIGH] CWE-122 CVE-2024-49104: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49123HIGHCVSS 8.1fixed in 10.0.26100.26052024-12-12
CVE-2024-49123 [HIGH] CWE-591 CVE-2024-49123: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49107HIGHCVSS 7.3fixed in 10.0.26100.26052024-12-12
CVE-2024-49107 [HIGH] CWE-59 CVE-2024-49107: WmsRepair Service Elevation of Privilege Vulnerability WmsRepair Service Elevation of Privilege Vulnerability
nvd
CVE-2024-49126HIGHCVSS 8.1fixed in 10.0.26100.26052024-12-12
CVE-2024-49126 [HIGH] CWE-416 CVE-2024-49126: Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
nvd
CVE-2024-49093HIGHCVSS 8.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49093 [HIGH] CWE-681 CVE-2024-49093: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd
CVE-2024-49121HIGHCVSS 7.5fixed in 10.0.26100.26052024-12-12
CVE-2024-49121 [HIGH] CWE-476 CVE-2024-49121: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2024-49079HIGHCVSS 7.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49079 [HIGH] CWE-416 CVE-2024-49079: Input Method Editor (IME) Remote Code Execution Vulnerability Input Method Editor (IME) Remote Code Execution Vulnerability
nvd
CVE-2024-49097HIGHCVSS 7.0fixed in 10.0.26100.26052024-12-12
CVE-2024-49097 [HIGH] CWE-416 CVE-2024-49097: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2024-49076HIGHCVSS 7.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49076 [HIGH] CWE-287 CVE-2024-49076: Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
nvd
CVE-2024-49084HIGHCVSS 7.0fixed in 10.0.26100.26052024-12-12
CVE-2024-49084 [HIGH] CWE-362 CVE-2024-49084: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-49075HIGHCVSS 7.5fixed in 10.0.26100.26052024-12-12
CVE-2024-49075 [HIGH] CWE-400 CVE-2024-49075: Windows Remote Desktop Services Denial of Service Vulnerability Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2024-49102HIGHCVSS 8.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49102 [HIGH] CWE-122 CVE-2024-49102: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49072HIGHCVSS 7.8fixed in 10.0.26100.26052024-12-12
CVE-2024-49072 [HIGH] CWE-122 CVE-2024-49072: Windows Task Scheduler Elevation of Privilege Vulnerability Windows Task Scheduler Elevation of Privilege Vulnerability
nvd
CVE-2024-49113HIGHCVSS 7.5fixed in 10.0.26100.26052024-12-12
CVE-2024-49113 [HIGH] CWE-125 CVE-2024-49113: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2024-49118HIGHCVSS 8.1fixed in 10.0.26100.26052024-12-12
CVE-2024-49118 [HIGH] CWE-416 CVE-2024-49118: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-49127HIGHCVSS 8.1fixed in 10.0.26100.26052024-12-12
CVE-2024-49127 [HIGH] CWE-416 CVE-2024-49127: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2024-49095HIGHCVSS 7.0fixed in 10.0.26100.26052024-12-12
CVE-2024-49095 [HIGH] CWE-415 CVE-2024-49095: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2024-49138HIGHCVSS 7.8KEVPoCfixed in 10.0.26100.26052024-12-12
CVE-2024-49138 [HIGH] CWE-122 CVE-2024-49138: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd