Microsoft Windows 11 Version 21H2 vulnerabilities

1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.

Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
24
Exploited in wild
77
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4

Vulnerabilities

Page 38 of 78
CVE-2022-35753HIGHCVSS 8.1≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35753 [HIGH] CVE-2022-35753: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-35756HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35756 [HIGH] CVE-2022-35756: Windows Kerberos Elevation of Privilege Vulnerability Windows Kerberos Elevation of Privilege Vulnerability
nvd
CVE-2022-35743HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35743 [HIGH] CWE-94 CVE-2022-35743: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
nvd
CVE-2022-35750HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35750 [HIGH] Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability
cvelistv5
CVE-2022-35754MEDIUMCVSS 6.7≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35754 [MEDIUM] CVE-2022-35754: Unified Write Filter Elevation of Privilege Vulnerability Unified Write Filter Elevation of Privilege Vulnerability
nvd
CVE-2022-35747MEDIUMCVSS 5.9≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35747 [MEDIUM] CVE-2022-35747: Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability
nvd
CVE-2022-35759MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35759 [MEDIUM] CVE-2022-35759: Windows Local Security Authority (LSA) Denial of Service Vulnerability Windows Local Security Authority (LSA) Denial of Service Vulnerability
nvd
CVE-2022-35758MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.22000.8562023-05-31
CVE-2022-35758 [MEDIUM] CVE-2022-35758: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2023-24943CRITICALCVSS 9.8≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24943 [CRITICAL] CWE-122 CVE-2023-24943: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-24949HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24949 [HIGH] CWE-190 CVE-2023-24949: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-24946HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24946 [HIGH] CWE-591 CVE-2023-24946: Windows Backup Service Elevation of Privilege Vulnerability Windows Backup Service Elevation of Privilege Vulnerability
nvd
CVE-2023-24902HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24902 [HIGH] CWE-125 Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability
cvelistv5
CVE-2023-24940HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24940 [HIGH] CWE-476 CVE-2023-24940: Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
nvd
CVE-2023-24903HIGHCVSS 8.1≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24903 [HIGH] CWE-415 CVE-2023-24903: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2023-28283HIGHCVSS 8.1≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-28283 [HIGH] CWE-591 CVE-2023-28283: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2023-24905HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24905 [HIGH] CWE-284 CVE-2023-24905: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2023-24939HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24939 [HIGH] Server for NFS Denial of Service Vulnerability Server for NFS Denial of Service Vulnerability Server for NFS Denial of Service Vulnerability
cvelistv5
CVE-2023-24942HIGHCVSS 7.5≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24942 [HIGH] CWE-126 CVE-2023-24942: Remote Procedure Call Runtime Denial of Service Vulnerability Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-29325HIGHCVSS 8.1≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-29325 [HIGH] CWE-416 Windows OLE Remote Code Execution Vulnerability Windows OLE Remote Code Execution Vulnerability Windows OLE Remote Code Execution Vulnerability
cvelistv5
CVE-2023-24899HIGHCVSS 7.0≥ 10.0.0, < 10.0.22000.19362023-05-09
CVE-2023-24899 [HIGH] CWE-591 CVE-2023-24899: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd