cbcvebase.

Microsoft Windows 11 Version 22H2 vulnerabilities

1,776 known vulnerabilities affecting microsoft/windows_11_version_22h2.

Total CVEs
1,776
CISA KEV
72
actively exploited
Public exploits
51
Exploited in wild
87
Severity breakdown
CRITICAL42HIGH1247MEDIUM479LOW8

Vulnerabilities

Page 19 of 89
CVE-2022-41047P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.8192022-11-09
CVE-2022-41047 [HIGH] CVE-2022-41047: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2025-21332P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.47512025-01-14
CVE-2025-21332 [HIGH] CWE-41 CVE-2025-21332: MapUrlToZone Security Feature Bypass Vulnerability MapUrlToZone Security Feature Bypass Vulnerability
nvd
CVE-2023-36882P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.21342023-08-08
CVE-2023-36882 [HIGH] CWE-416 CVE-2023-36882: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-35359P3HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.21342023-08-08
CVE-2023-35359 [HIGH] CWE-23 CVE-2023-35359: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-29373P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.18482023-06-14
CVE-2023-29373 [HIGH] CWE-125 CVE-2023-29373: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2023-32038P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.19922023-07-11
CVE-2023-32038 [HIGH] CWE-416 CVE-2023-32038: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-49117P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.46022024-12-12
CVE-2024-49117 [HIGH] CWE-393 CVE-2024-49117: Windows Hyper-V Remote Code Execution Vulnerability Windows Hyper-V Remote Code Execution Vulnerability
nvd
CVE-2025-49740P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.56242025-07-08
CVE-2025-49740 [HIGH] CWE-693 CVE-2025-49740: Protection mechanism failure in Windows SmartScreen allows an unauthorized attacker to bypass a secu Protection mechanism failure in Windows SmartScreen allows an unauthorized attacker to bypass a security feature over a network.
nvd
CVE-2023-21543P3HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.11052023-01-10
CVE-2023-21543 [HIGH] CWE-400 CVE-2023-21543: Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
nvd
CVE-2024-30089P3HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.37372024-06-11
CVE-2024-30089 [HIGH] CWE-416 CVE-2024-30089: Microsoft Streaming Service Elevation of Privilege Vulnerability Microsoft Streaming Service Elevation of Privilege Vulnerability
nvd
CVE-2024-30020P3HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.35932024-05-14
CVE-2024-30020 [HIGH] CWE-122 CVE-2024-30020: Windows Cryptographic Services Remote Code Execution Vulnerability Windows Cryptographic Services Remote Code Execution Vulnerability
nvd
CVE-2024-49126P3HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.46022024-12-12
CVE-2024-49126 [HIGH] CWE-416 CVE-2024-49126: Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
nvd
CVE-2025-29828P3HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.54722025-06-10
CVE-2025-29828 [HIGH] CWE-401 CVE-2025-29828: Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unaut Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to execute code over a network.
nvd
CVE-2025-27487P3HIGHCVSS 8.0≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27487 [HIGH] CWE-122 CVE-2025-27487: Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code ov Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
nvd
CVE-2024-49123P3HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.46022024-12-12
CVE-2024-49123 [HIGH] CWE-591 CVE-2024-49123: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49132P3HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.46022024-12-12
CVE-2024-49132 [HIGH] CWE-416 CVE-2024-49132: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2023-23416P3HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.14132023-03-14
CVE-2023-23416 [HIGH] CWE-20 CVE-2023-23416: Windows Cryptographic Services Remote Code Execution Vulnerability Windows Cryptographic Services Remote Code Execution Vulnerability
nvd
CVE-2023-36400P3HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.27152023-11-14
CVE-2023-36400 [HIGH] CWE-122 CVE-2023-36400: Windows HMAC Key Derivation Elevation of Privilege Vulnerability Windows HMAC Key Derivation Elevation of Privilege Vulnerability
nvd
CVE-2023-36903P3CRITICALCVSS 9.8≥ 10.0.22621.0, < 10.0.22621.21342023-08-08
CVE-2023-36903 [CRITICAL] CWE-59 CVE-2023-36903: Windows System Assessment Tool Elevation of Privilege Vulnerability Windows System Assessment Tool Elevation of Privilege Vulnerability
nvd
CVE-2023-21539P3HIGHCVSS 7.5≥ 10.0.22621.0, < 10.0.22621.11052023-01-10
CVE-2023-21539 [HIGH] CWE-125 CVE-2023-21539: Windows Authentication Remote Code Execution Vulnerability Windows Authentication Remote Code Execution Vulnerability
nvd
Microsoft Windows 11 Version 22H2 vulnerabilities | cvebase