Microsoft Windows 11 Version 24H2 vulnerabilities

1,186 known vulnerabilities affecting microsoft/windows_11_version_24h2.

Total CVEs
1,186
CISA KEV
43
actively exploited
Public exploits
18
Exploited in wild
14
Severity breakdown
CRITICAL17HIGH827MEDIUM337LOW5

Vulnerabilities

Page 49 of 60
CVE-2025-21210MEDIUMCVSS 4.2≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21210 [MEDIUM] CWE-636 CVE-2025-21210: Windows BitLocker Information Disclosure Vulnerability Windows BitLocker Information Disclosure Vulnerability
nvd
CVE-2025-21261MEDIUMCVSS 6.6≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21261 [MEDIUM] CWE-125 CVE-2025-21261: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21219MEDIUMCVSS 4.3≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21219 [MEDIUM] CWE-41 CVE-2025-21219: MapUrlToZone Security Feature Bypass Vulnerability MapUrlToZone Security Feature Bypass Vulnerability
nvd
CVE-2025-21268MEDIUMCVSS 4.3≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21268 [MEDIUM] CWE-41 CVE-2025-21268: MapUrlToZone Security Feature Bypass Vulnerability MapUrlToZone Security Feature Bypass Vulnerability
nvd
CVE-2025-21217MEDIUMCVSS 6.5≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21217 [MEDIUM] CWE-693 Windows NTLM Spoofing Vulnerability Windows NTLM Spoofing Vulnerability Windows NTLM Spoofing Vulnerability
cvelistv5
CVE-2025-21310MEDIUMCVSS 6.6≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21310 [MEDIUM] CWE-125 CVE-2025-21310: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21226MEDIUMCVSS 6.6≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21226 [MEDIUM] CWE-125 CVE-2025-21226: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21288MEDIUMCVSS 6.5≥ 10.0.26100.0, < 10.0.26100.28942025-01-14
CVE-2025-21288 [MEDIUM] CWE-908 CVE-2025-21288: Windows COM Server Information Disclosure Vulnerability Windows COM Server Information Disclosure Vulnerability
nvd
CVE-2024-49112CRITICALCVSS 9.8≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49112 [CRITICAL] CWE-190 CVE-2024-49112: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2024-49122HIGHCVSS 8.1≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49122 [HIGH] CWE-416 CVE-2024-49122: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-49105HIGHCVSS 8.4≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49105 [HIGH] CWE-284 CVE-2024-49105: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2024-49080HIGHCVSS 8.8≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49080 [HIGH] CWE-122 CVE-2024-49080: Windows IP Routing Management Snapin Remote Code Execution Vulnerability Windows IP Routing Management Snapin Remote Code Execution Vulnerability
nvd
CVE-2024-49088HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49088 [HIGH] CWE-126 CVE-2024-49088: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-49090HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49090 [HIGH] CWE-822 CVE-2024-49090: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-49089HIGHCVSS 7.2≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49089 [HIGH] CWE-122 CVE-2024-49089: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49104HIGHCVSS 8.8≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49104 [HIGH] CWE-122 CVE-2024-49104: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49123HIGHCVSS 8.1≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49123 [HIGH] CWE-591 CVE-2024-49123: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49107HIGHCVSS 7.3≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49107 [HIGH] CWE-59 CVE-2024-49107: WmsRepair Service Elevation of Privilege Vulnerability WmsRepair Service Elevation of Privilege Vulnerability
nvd
CVE-2024-49126HIGHCVSS 8.1≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49126 [HIGH] CWE-416 CVE-2024-49126: Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
nvd
CVE-2024-49093HIGHCVSS 8.8≥ 10.0.26100.0, < 10.0.26100.26052024-12-12
CVE-2024-49093 [HIGH] CWE-681 CVE-2024-49093: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd