cbcvebase.

Microsoft Windows 11 Version 23H2 vulnerabilities

1,661 known vulnerabilities affecting microsoft/windows_11_version_23h2.

Total CVEs
1,661
CISA KEV
59
actively exploited
Public exploits
42
Exploited in wild
71
Severity breakdown
CRITICAL25HIGH1170MEDIUM458LOW8

Vulnerabilities

Page 73 of 84
CVE-2025-21318P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.47512025-01-14
CVE-2025-21318 [MEDIUM] CWE-532 CVE-2025-21318: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2025-21319P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.47512025-01-14
CVE-2025-21319 [MEDIUM] CWE-532 CVE-2025-21319: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2025-21316P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.47512025-01-14
CVE-2025-21316 [MEDIUM] CWE-532 CVE-2025-21316: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2025-21317P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.47512025-01-14
CVE-2025-21317 [MEDIUM] CWE-532 CVE-2025-21317: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2025-21323P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.47512025-01-14
CVE-2025-21323 [MEDIUM] CWE-532 CVE-2025-21323: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2024-38056P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.38802024-07-09
CVE-2024-38056 [MEDIUM] CWE-125 CVE-2024-38056: Microsoft Windows Codecs Library Information Disclosure Vulnerability Microsoft Windows Codecs Library Information Disclosure Vulnerability
nvd
CVE-2024-38055P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.38802024-07-09
CVE-2024-38055 [MEDIUM] CWE-20 CVE-2024-38055: Microsoft Windows Codecs Library Information Disclosure Vulnerability Microsoft Windows Codecs Library Information Disclosure Vulnerability
nvd
CVE-2024-26207P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.35932024-04-09
CVE-2024-26207 [MEDIUM] CWE-125 CVE-2024-26207: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-28902P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.35932024-04-09
CVE-2024-28902 [MEDIUM] CWE-126 CVE-2024-28902: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-26255P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-26255 [MEDIUM] CWE-126 CVE-2024-26255: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-30039P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.35932024-05-14
CVE-2024-30039 [MEDIUM] CWE-126 CVE-2024-30039: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-38155P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.40372024-08-13
CVE-2024-38155 [MEDIUM] CWE-125 CVE-2024-38155: Security Center Broker Information Disclosure Vulnerability Security Center Broker Information Disclosure Vulnerability
nvd
CVE-2025-27742P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.51892025-04-08
CVE-2025-27742 [MEDIUM] CWE-125 CVE-2025-27742: Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
nvd
CVE-2024-38203P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.44602024-11-12
CVE-2024-38203 [MEDIUM] CWE-693 CVE-2024-38203: Windows Package Library Manager Information Disclosure Vulnerability Windows Package Library Manager Information Disclosure Vulnerability
nvd
CVE-2024-28900P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.35932024-04-09
CVE-2024-28900 [MEDIUM] CWE-126 CVE-2024-28900: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-28901P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.34472024-04-09
CVE-2024-28901 [MEDIUM] CWE-126 CVE-2024-28901: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-38118P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.40372024-08-13
CVE-2024-38118 [MEDIUM] CWE-908 CVE-2024-38118: Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
nvd
CVE-2024-38122P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.40372024-08-13
CVE-2024-38122 [MEDIUM] CWE-908 CVE-2024-38122: Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
nvd
CVE-2026-25168P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.67832026-03-10
CVE-2026-25168 [MEDIUM] CWE-476 CVE-2026-25168: Null pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to deny ser Null pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to deny service locally.
nvd
CVE-2025-59190P4MEDIUMCVSS 5.5≥ 10.0.22631.0, < 10.0.22631.60602025-10-14
CVE-2025-59190 [MEDIUM] CWE-20 CVE-2025-59190: Improper input validation in Microsoft Windows Search Component allows an unauthorized attacker to d Improper input validation in Microsoft Windows Search Component allows an unauthorized attacker to deny service locally.
nvd
Microsoft Windows 11 Version 23H2 vulnerabilities | cvebase