Microsoft Windows 11 Version 21H2 vulnerabilities
1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.
Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
24
Exploited in wild
77
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4
Vulnerabilities
Page 25 of 78
CVE-2023-36033HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36033 [HIGH] CWE-822 CVE-2023-36033: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-36425HIGHCVSS 8.0≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36425 [HIGH] CWE-122 CVE-2023-36425: Windows Distributed File System (DFS) Remote Code Execution Vulnerability
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
nvd
CVE-2023-36036HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36036 [HIGH] CWE-122 CVE-2023-36036: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36423HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36423 [HIGH] CWE-122 CVE-2023-36423: Microsoft Remote Registry Service Remote Code Execution Vulnerability
Microsoft Remote Registry Service Remote Code Execution Vulnerability
nvd
CVE-2023-36400HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36400 [HIGH] CWE-122 CVE-2023-36400: Windows HMAC Key Derivation Elevation of Privilege Vulnerability
Windows HMAC Key Derivation Elevation of Privilege Vulnerability
nvd
CVE-2023-36017HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36017 [HIGH] CWE-843 CVE-2023-36017: Windows Scripting Engine Memory Corruption Vulnerability
Windows Scripting Engine Memory Corruption Vulnerability
nvd
CVE-2023-36402HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36402 [HIGH] CWE-122 CVE-2023-36402: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-36399HIGHCVSS 7.1≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36399 [HIGH] CWE-59 CVE-2023-36399: Windows Storage Elevation of Privilege Vulnerability
Windows Storage Elevation of Privilege Vulnerability
nvd
CVE-2023-36047HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36047 [HIGH] CWE-59 CVE-2023-36047: Windows Authentication Elevation of Privilege Vulnerability
Windows Authentication Elevation of Privilege Vulnerability
nvd
CVE-2023-36424HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36424 [HIGH] CWE-125 CVE-2023-36424: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36408HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36408 [HIGH] CWE-122 CVE-2023-36408: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2023-36406MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36406 [MEDIUM] CWE-20 CVE-2023-36406: Windows Hyper-V Information Disclosure Vulnerability
Windows Hyper-V Information Disclosure Vulnerability
nvd
CVE-2023-36404MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36404 [MEDIUM] CWE-284 CVE-2023-36404: Windows Kernel Information Disclosure Vulnerability
Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2023-36428MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36428 [MEDIUM] CWE-125 CVE-2023-36428: Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
nvd
CVE-2023-36398MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36398 [MEDIUM] CWE-908 Windows NTFS Information Disclosure Vulnerability
Windows NTFS Information Disclosure Vulnerability
Windows NTFS Information Disclosure Vulnerability
cvelistv5
CVE-2023-35349CRITICALCVSS 9.8≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-35349 [CRITICAL] CWE-20 CVE-2023-35349: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36434CRITICALCVSS 9.8≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36434 [CRITICAL] CWE-307 CVE-2023-36434: Windows IIS Server Elevation of Privilege Vulnerability
Windows IIS Server Elevation of Privilege Vulnerability
nvd
CVE-2023-36743HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36743 [HIGH] CWE-416 Win32k Elevation of Privilege Vulnerability
Win32k Elevation of Privilege Vulnerability
Win32k Elevation of Privilege Vulnerability
cvelistv5
CVE-2023-36592HIGHCVSS 7.3≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36592 [HIGH] CWE-94 CVE-2023-36592: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2023-36431HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36431 [HIGH] CWE-400 CVE-2023-36431: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd