Microsoft Windows 11 Version 21H2 vulnerabilities

1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.

Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
24
Exploited in wild
77
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4

Vulnerabilities

Page 34 of 78
CVE-2023-36874HIGHCVSS 7.8KEVPoC≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-36874 [HIGH] CWE-59 CVE-2023-36874: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2023-32049HIGHCVSS 8.8KEV≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32049 [HIGH] CVE-2023-32049: Windows SmartScreen Security Feature Bypass Vulnerability Windows SmartScreen Security Feature Bypass Vulnerability
nvd
CVE-2023-32035HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32035 [HIGH] CWE-125 CVE-2023-32035: Remote Procedure Call Runtime Denial of Service Vulnerability Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-35357HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35357 [HIGH] CWE-125 CVE-2023-35357: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-35303HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35303 [HIGH] CWE-20 CVE-2023-35303: USB Audio Class System Driver Remote Code Execution Vulnerability USB Audio Class System Driver Remote Code Execution Vulnerability
nvd
CVE-2023-32084HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32084 [HIGH] CWE-476 HTTP.sys Denial of Service Vulnerability HTTP.sys Denial of Service Vulnerability HTTP.sys Denial of Service Vulnerability
cvelistv5
CVE-2023-32045HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32045 [HIGH] CWE-125 CVE-2023-32045: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-35298HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35298 [HIGH] CWE-400 HTTP.sys Denial of Service Vulnerability HTTP.sys Denial of Service Vulnerability HTTP.sys Denial of Service Vulnerability
cvelistv5
CVE-2023-33169HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-33169 [HIGH] CWE-126 CVE-2023-33169: Remote Procedure Call Runtime Denial of Service Vulnerability Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-35325HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35325 [HIGH] CWE-908 CVE-2023-35325: Windows Print Spooler Information Disclosure Vulnerability Windows Print Spooler Information Disclosure Vulnerability
nvd
CVE-2023-35320HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35320 [HIGH] CWE-59 CVE-2023-35320: Connected User Experiences and Telemetry Elevation of Privilege Vulnerability Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
nvd
CVE-2023-35340HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35340 [HIGH] CWE-591 CVE-2023-35340: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35297HIGHCVSS 8.1≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35297 [HIGH] CWE-843 CVE-2023-35297: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-35362HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35362 [HIGH] CWE-591 CVE-2023-35362: Windows Clip Service Elevation of Privilege Vulnerability Windows Clip Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35347HIGHCVSS 7.1≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35347 [HIGH] CWE-59 CVE-2023-35347: Microsoft Install Service Elevation of Privilege Vulnerability Microsoft Install Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35339HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35339 [HIGH] CWE-400 Windows CryptoAPI Denial of Service Vulnerability Windows CryptoAPI Denial of Service Vulnerability Windows CryptoAPI Denial of Service Vulnerability
cvelistv5
CVE-2023-35312HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35312 [HIGH] CWE-190 CVE-2023-35312: Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability
nvd
CVE-2023-35338HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35338 [HIGH] CWE-476 CVE-2023-35338: Windows Peer Name Resolution Protocol Denial of Service Vulnerability Windows Peer Name Resolution Protocol Denial of Service Vulnerability
nvd
CVE-2023-35353HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-35353 [HIGH] CWE-59 CVE-2023-35353: Connected User Experiences and Telemetry Elevation of Privilege Vulnerability Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
nvd
CVE-2023-32038HIGHCVSS 8.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32038 [HIGH] CWE-416 CVE-2023-32038: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd