Microsoft Windows 11 Version 23H2 vulnerabilities

1,506 known vulnerabilities affecting microsoft/windows_11_version_23h2.

Total CVEs
1,506
CISA KEV
58
actively exploited
Public exploits
24
Exploited in wild
30
Severity breakdown
CRITICAL18HIGH1051MEDIUM430LOW7

Vulnerabilities

Page 68 of 76
CVE-2024-26255MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-26255 [MEDIUM] CWE-126 CVE-2024-26255: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-28901MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-28901 [MEDIUM] CWE-126 CVE-2024-28901: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-26253MEDIUMCVSS 6.8≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-26253 [MEDIUM] CWE-20 CVE-2024-26253: Windows rndismp6.sys Remote Code Execution Vulnerability Windows rndismp6.sys Remote Code Execution Vulnerability
nvd
CVE-2024-28903MEDIUMCVSS 6.7≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-28903 [MEDIUM] CWE-693 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2024-26171MEDIUMCVSS 6.7≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-26171 [MEDIUM] CWE-190 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2024-26217LOWCVSS 3.3≥ 10.0.22631.0, < 10.0.22631.35932024-04-09
CVE-2024-26217 [LOW] CWE-125 CVE-2024-26217: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-21432HIGHCVSS 7.0≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21432 [HIGH] CWE-59 CVE-2024-21432: Windows Update Stack Elevation of Privilege Vulnerability Windows Update Stack Elevation of Privilege Vulnerability
nvd
CVE-2024-26173HIGHCVSS 7.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-26173 [HIGH] CWE-20 CVE-2024-26173: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26169HIGHCVSS 7.8KEV≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-26169 [HIGH] CWE-269 CVE-2024-26169: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21433HIGHCVSS 7.0≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21433 [HIGH] CWE-367 CVE-2024-21433: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2024-21442HIGHCVSS 7.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21442 [HIGH] CWE-170 CVE-2024-21442: Windows USB Print Driver Elevation of Privilege Vulnerability Windows USB Print Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-21434HIGHCVSS 7.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21434 [HIGH] CWE-197 CVE-2024-21434: Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability
nvd
CVE-2024-21435HIGHCVSS 8.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21435 [HIGH] CWE-426 Windows OLE Remote Code Execution Vulnerability Windows OLE Remote Code Execution Vulnerability Windows OLE Remote Code Execution Vulnerability
cvelistv5
CVE-2024-26166HIGHCVSS 8.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-26166 [HIGH] CWE-122 CVE-2024-26166: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-26178HIGHCVSS 7.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-26178 [HIGH] CWE-122 CVE-2024-26178: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21436HIGHCVSS 7.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21436 [HIGH] CWE-284 CVE-2024-21436: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2024-21439HIGHCVSS 7.0≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21439 [HIGH] CWE-416 CVE-2024-21439: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2024-26162HIGHCVSS 8.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-26162 [HIGH] CWE-681 CVE-2024-26162: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-21437HIGHCVSS 7.8≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-21437 [HIGH] CWE-416 CVE-2024-21437: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-26190HIGHCVSS 7.5≥ 10.0.22631.0, < 10.0.22631.32962024-03-12
CVE-2024-26190 [HIGH] CWE-400 Microsoft QUIC Denial of Service Vulnerability Microsoft QUIC Denial of Service Vulnerability Microsoft QUIC Denial of Service Vulnerability
cvelistv5