Microsoft Windows 11 Version 22H2 vulnerabilities

1,775 known vulnerabilities affecting microsoft/windows_11_version_22h2.

Total CVEs
1,775
CISA KEV
72
actively exploited
Public exploits
32
Exploited in wild
54
Severity breakdown
CRITICAL42HIGH1246MEDIUM479LOW8

Vulnerabilities

Page 58 of 89
CVE-2024-21311MEDIUMCVSS 5.5≥ 10.0.22621.0, < 10.0.22621.30072024-01-09
CVE-2024-21311 [MEDIUM] CWE-125 CVE-2024-21311: Windows Cryptographic Services Information Disclosure Vulnerability Windows Cryptographic Services Information Disclosure Vulnerability
nvd
CVE-2022-44684MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.9932023-12-20
CVE-2022-44684 [MEDIUM] CVE-2022-44684: Windows Local Session Manager (LSM) Denial of Service Vulnerability Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2023-35641HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35641 [HIGH] CWE-682 CVE-2023-35641: Internet Connection Sharing (ICS) Remote Code Execution Vulnerability Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
nvd
CVE-2023-35644HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35644 [HIGH] CWE-190 CVE-2023-35644: Windows Sysmain Service Elevation of Privilege Vulnerability Windows Sysmain Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35628HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35628 [HIGH] CWE-416 CVE-2023-35628: Windows MSHTML Platform Remote Code Execution Vulnerability Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2023-36011HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-36011 [HIGH] CWE-822 Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability
cvelistv5
CVE-2023-35634HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35634 [HIGH] CWE-121 CVE-2023-35634: Windows Bluetooth Driver Remote Code Execution Vulnerability Windows Bluetooth Driver Remote Code Execution Vulnerability
nvd
CVE-2023-35630HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35630 [HIGH] CWE-122 CVE-2023-35630: Internet Connection Sharing (ICS) Remote Code Execution Vulnerability Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
nvd
CVE-2023-36006HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-36006 [HIGH] CWE-121 CVE-2023-36006: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-35639HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35639 [HIGH] CWE-122 CVE-2023-35639: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2023-35631HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35631 [HIGH] Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability
cvelistv5
CVE-2023-21740HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-21740 [HIGH] CWE-122 Windows Media Remote Code Execution Vulnerability Windows Media Remote Code Execution Vulnerability Windows Media Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36003HIGHCVSS 7.3≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-36003 [HIGH] CWE-426 CVE-2023-36003: XAML Diagnostics Elevation of Privilege Vulnerability XAML Diagnostics Elevation of Privilege Vulnerability
nvd
CVE-2023-36696HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-36696 [HIGH] CWE-125 CVE-2023-36696: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36005HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-36005 [HIGH] CWE-591 CVE-2023-36005: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2023-36004HIGHCVSS 7.5≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-36004 [HIGH] CWE-287 CVE-2023-36004: Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability
nvd
CVE-2023-35635MEDIUMCVSS 5.5≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35635 [MEDIUM] CWE-125 Windows Kernel Denial of Service Vulnerability Windows Kernel Denial of Service Vulnerability Windows Kernel Denial of Service Vulnerability
cvelistv5
CVE-2023-35642MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.28612023-12-12
CVE-2023-35642 [MEDIUM] CWE-682 CVE-2023-35642: Internet Connection Sharing (ICS) Denial of Service Vulnerability Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2023-36028CRITICALCVSS 9.8≥ 10.0.22621.0, < 10.0.22621.27152023-11-14
CVE-2023-36028 [CRITICAL] CWE-122 CVE-2023-36028: Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
nvd
CVE-2023-36397CRITICALCVSS 9.8≥ 10.0.22621.0, < 10.0.22621.27152023-11-14
CVE-2023-36397 [CRITICAL] CWE-126 CVE-2023-36397: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd