Microsoft Windows 11 Version 21H2 vulnerabilities

1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.

Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
24
Exploited in wild
77
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4

Vulnerabilities

Page 15 of 78
CVE-2024-26189HIGHCVSS 8.0≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26189 [HIGH] CWE-20 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2024-26210HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26210 [HIGH] CWE-122 CVE-2024-26210: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-26239HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26239 [HIGH] CWE-122 CVE-2024-26239: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-26242HIGHCVSS 7.0≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26242 [HIGH] CWE-591 CVE-2024-26242: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-28896HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-28896 [HIGH] CWE-122 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2024-26237HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26237 [HIGH] CWE-416 CVE-2024-26237: Windows Defender Credential Guard Elevation of Privilege Vulnerability Windows Defender Credential Guard Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-29061HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-29061 [HIGH] CWE-121 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2024-26228HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26228 [HIGH] CWE-310 CVE-2024-26228: Windows Cryptographic Services Security Feature Bypass Vulnerability Windows Cryptographic Services Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2024-20693HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-20693 [HIGH] CWE-426 CVE-2024-20693: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-26232HIGHCVSS 7.3≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26232 [HIGH] CWE-843 CVE-2024-26232: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-26218HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26218 [HIGH] CWE-367 CVE-2024-26218: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-26208HIGHCVSS 7.2≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26208 [HIGH] CWE-191 CVE-2024-26208: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-29050HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-29050 [HIGH] CWE-197 CVE-2024-29050: Windows Cryptographic Services Remote Code Execution Vulnerability Windows Cryptographic Services Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-26219HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26219 [HIGH] CWE-476 HTTP.sys Denial of Service Vulnerability HTTP.sys Denial of Service Vulnerability HTTP.sys Denial of Service Vulnerability
cvelistv5
CVE-2024-26214HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26214 [HIGH] CWE-122 CVE-2024-26214: Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-26200HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26200 [HIGH] CWE-122 CVE-2024-26200: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-29988HIGHCVSS 8.8KEV≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-29988 [HIGH] CWE-693 CVE-2024-29988: SmartScreen Prompt Security Feature Bypass Vulnerability SmartScreen Prompt Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2024-26205HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-26205 [HIGH] CWE-122 CVE-2024-26205: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-29052HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-29052 [HIGH] CWE-269 CVE-2024-29052: Windows Storage Elevation of Privilege Vulnerability Windows Storage Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-28920HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.28992024-04-09
CVE-2024-28920 [HIGH] CWE-693 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5