Microsoft Windows 11 Version 21H2 vulnerabilities

1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.

Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
24
Exploited in wild
77
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4

Vulnerabilities

Page 29 of 78
CVE-2023-36584MEDIUMCVSS 5.4KEV≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36584 [MEDIUM] CVE-2023-36584: Windows Mark of the Web Security Feature Bypass Vulnerability Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2023-36698MEDIUMCVSS 4.4≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36698 [MEDIUM] CWE-362 CVE-2023-36698: Windows Kernel Security Feature Bypass Vulnerability Windows Kernel Security Feature Bypass Vulnerability
nvd
CVE-2023-36724MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36724 [MEDIUM] CWE-287 CVE-2023-36724: Windows Power Management Service Information Disclosure Vulnerability Windows Power Management Service Information Disclosure Vulnerability
nvd
CVE-2023-36717MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36717 [MEDIUM] CVE-2023-36717: Windows Virtual Trusted Platform Module Denial of Service Vulnerability Windows Virtual Trusted Platform Module Denial of Service Vulnerability
nvd
CVE-2023-36564MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36564 [MEDIUM] CVE-2023-36564: Windows Search Security Feature Bypass Vulnerability Windows Search Security Feature Bypass Vulnerability
nvd
CVE-2023-36713MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36713 [MEDIUM] CWE-908 CVE-2023-36713: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2023-36722MEDIUMCVSS 4.4≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36722 [MEDIUM] CWE-284 CVE-2023-36722: Active Directory Domain Services Information Disclosure Vulnerability Active Directory Domain Services Information Disclosure Vulnerability
nvd
CVE-2023-36563MEDIUMCVSS 5.5KEV≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36563 [MEDIUM] CWE-20 CVE-2023-36563: Microsoft WordPad Information Disclosure Vulnerability Microsoft WordPad Information Disclosure Vulnerability
nvd
CVE-2023-36576MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36576 [MEDIUM] CWE-190 CVE-2023-36576: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2023-38146HIGHCVSS 8.8PoC≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38146 [HIGH] CWE-367 CVE-2023-38146: Windows Themes Remote Code Execution Vulnerability Windows Themes Remote Code Execution Vulnerability
nvd
CVE-2023-38149HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38149 [HIGH] CWE-400 Windows TCP/IP Denial of Service Vulnerability Windows TCP/IP Denial of Service Vulnerability Windows TCP/IP Denial of Service Vulnerability
cvelistv5
CVE-2023-38150HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38150 [HIGH] CWE-190 CVE-2023-38150: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-38147HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38147 [HIGH] CWE-122 CVE-2023-38147: Windows Miracast Wireless Display Remote Code Execution Vulnerability Windows Miracast Wireless Display Remote Code Execution Vulnerability
nvd
CVE-2023-38142HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38142 [HIGH] CWE-190 CVE-2023-38142: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-38144HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38144 [HIGH] CWE-126 CVE-2023-38144: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-38161HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38161 [HIGH] CWE-416 Windows GDI Elevation of Privilege Vulnerability Windows GDI Elevation of Privilege Vulnerability Windows GDI Elevation of Privilege Vulnerability
cvelistv5
CVE-2023-38148HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38148 [HIGH] CWE-121 CVE-2023-38148: Internet Connection Sharing (ICS) Remote Code Execution Vulnerability Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
nvd
CVE-2023-36802HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-36802 [HIGH] CWE-416 CVE-2023-36802: Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
nvd
CVE-2023-38141HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-38141 [HIGH] CWE-367 CVE-2023-38141: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-35355HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.24162023-09-12
CVE-2023-35355 [HIGH] CWE-121 CVE-2023-35355: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd