Microsoft Windows 11 Version 21H2 vulnerabilities
1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.
Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
47
Exploited in wild
90
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4
Vulnerabilities
Page 44 of 78
CVE-2023-21724P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21724 [HIGH] CWE-416 CVE-2023-21724: Microsoft DWM Core Library Elevation of Privilege Vulnerability
Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2022-30203P3HIGHCVSS 7.4≥ 10.0.0, < 10.0.22000.7952022-07-12
CVE-2022-30203 [HIGH] CWE-863 CVE-2022-30203: Windows Boot Manager Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
nvd
CVE-2022-41094P3HIGHCVSS 7.8≥ 10.0.22000.0, < 10.0.22000.13352022-12-13
CVE-2022-41094 [HIGH] CVE-2022-41094: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2022-44680P3HIGHCVSS 7.8≥ 10.0.22000.0, < 10.0.22000.13352022-12-13
CVE-2022-44680 [HIGH] CVE-2022-44680: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-37992P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.12192022-11-09
CVE-2022-37992 [HIGH] CVE-2022-37992: Windows Group Policy Elevation of Privilege Vulnerability
Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2022-37986P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.10982022-10-11
CVE-2022-37986 [HIGH] CVE-2022-37986: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21680P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21680 [HIGH] CWE-416 CVE-2023-21680: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2022-37983P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.10982022-10-11
CVE-2022-37983 [HIGH] CVE-2022-37983: Microsoft DWM Core Library Elevation of Privilege Vulnerability
Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-21765P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21765 [HIGH] CWE-190 CVE-2023-21765: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2023-21558P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21558 [HIGH] CWE-20 CVE-2023-21558: Windows Error Reporting Service Elevation of Privilege Vulnerability
Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2023-21767P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21767 [HIGH] CWE-20 CVE-2023-21767: Windows Overlay Filter Elevation of Privilege Vulnerability
Windows Overlay Filter Elevation of Privilege Vulnerability
nvd
CVE-2023-21551P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21551 [HIGH] CWE-416 CVE-2023-21551: Microsoft Cryptographic Services Elevation of Privilege Vulnerability
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
nvd
CVE-2023-21561P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21561 [HIGH] CWE-190 CVE-2023-21561: Microsoft Cryptographic Services Elevation of Privilege Vulnerability
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
nvd
CVE-2021-41366P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.3182021-11-10
CVE-2021-41366 [HIGH] CWE-269 CVE-2021-41366: Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
nvd
CVE-2024-38202P3HIGHCVSS 7.3≥ 10.0.0, < 10.0.22000.32602024-08-08
CVE-2024-38202 [HIGH] CWE-284 CVE-2024-38202: Summary Microsoft was notified that an elevation of privilege vulnerability exists in Windows Update
Summary
Microsoft was notified that an elevation of privilege vulnerability exists in Windows Update, potentially enabling an attacker with basic user privileges to reintroduce previously mitigated vulnerabilities or circumvent some features of Virtualization Based Security (VBS). However, an attacker attempting to exploit this vulnerability requires
nvd
CVE-2023-21756P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-21756 [HIGH] CWE-416 CVE-2023-21756: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21804P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22621.15742023-02-14
CVE-2023-21804 [HIGH] CWE-122 CVE-2023-21804: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-34706P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.8562022-08-09
CVE-2022-34706 [HIGH] CWE-269 CVE-2022-34706: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-21524P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.14552023-01-10
CVE-2023-21524 [HIGH] CWE-798 CVE-2023-21524: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-24910P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.22000.16962023-03-14
CVE-2023-24910 [HIGH] CWE-476 CVE-2023-24910: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd