Microsoft Windows 11 Version 24H2 vulnerabilities

1,186 known vulnerabilities affecting microsoft/windows_11_version_24h2.

Total CVEs
1,186
CISA KEV
43
actively exploited
Public exploits
18
Exploited in wild
14
Severity breakdown
CRITICAL17HIGH827MEDIUM337LOW5

Vulnerabilities

Page 53 of 60
CVE-2024-43633MEDIUMCVSS 6.5≥ 10.0.26100.0, < 10.0.26100.23142024-11-12
CVE-2024-43633 [MEDIUM] CWE-591 Windows Hyper-V Denial of Service Vulnerability Windows Hyper-V Denial of Service Vulnerability Windows Hyper-V Denial of Service Vulnerability
cvelistv5
CVE-2024-43638MEDIUMCVSS 6.8≥ 10.0.26100.0, < 10.0.26100.23142024-11-12
CVE-2024-43638 [MEDIUM] CWE-125 CVE-2024-43638: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43643MEDIUMCVSS 6.8≥ 10.0.26100.0, < 10.0.26100.23142024-11-12
CVE-2024-43643 [MEDIUM] CWE-125 CVE-2024-43643: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43451MEDIUMCVSS 6.5KEV≥ 10.0.26100.0, < 10.0.26100.23142024-11-12
CVE-2024-43451 [MEDIUM] CWE-73 NTLM Hash Disclosure Spoofing Vulnerability NTLM Hash Disclosure Spoofing Vulnerability NTLM Hash Disclosure Spoofing Vulnerability
cvelistv5
CVE-2024-43556HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43556 [HIGH] CWE-416 CVE-2024-43556: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-43574HIGHCVSS 8.3≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43574 [HIGH] CWE-416 CVE-2024-43574: Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability
nvd
CVE-2024-43550HIGHCVSS 7.4≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43550 [HIGH] CWE-295 Windows Secure Channel Spoofing Vulnerability Windows Secure Channel Spoofing Vulnerability Windows Secure Channel Spoofing Vulnerability
cvelistv5
CVE-2024-43535HIGHCVSS 7.0≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43535 [HIGH] CWE-416 CVE-2024-43535: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43518HIGHCVSS 8.8≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43518 [HIGH] CWE-122 CVE-2024-43518: Windows Telephony Server Remote Code Execution Vulnerability Windows Telephony Server Remote Code Execution Vulnerability
nvd
CVE-2024-43528HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.23032024-10-08
CVE-2024-43528 [HIGH] CWE-122 CVE-2024-43528: Windows Secure Kernel Mode Elevation of Privilege Vulnerability Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2024-43599HIGHCVSS 8.8≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43599 [HIGH] CWE-416 CVE-2024-43599: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2024-43615HIGHCVSS 7.1≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43615 [HIGH] CWE-73 CVE-2024-43615: Microsoft OpenSSH for Windows Remote Code Execution Vulnerability Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
nvd
CVE-2024-43501HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43501 [HIGH] CWE-59 CVE-2024-43501: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38149HIGHCVSS 7.5≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-38149 [HIGH] CWE-400 BranchCache Denial of Service Vulnerability BranchCache Denial of Service Vulnerability BranchCache Denial of Service Vulnerability
cvelistv5
CVE-2024-43517HIGHCVSS 8.8≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43517 [HIGH] CWE-122 CVE-2024-43517: Microsoft ActiveX Data Objects Remote Code Execution Vulnerability Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
nvd
CVE-2024-43565HIGHCVSS 7.5≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43565 [HIGH] CWE-125 CVE-2024-43565: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2024-43514HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43514 [HIGH] CWE-415 CVE-2024-43514: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd
CVE-2024-43583HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.26052024-10-08
CVE-2024-43583 [HIGH] CWE-250 Winlogon Elevation of Privilege Vulnerability Winlogon Elevation of Privilege Vulnerability Winlogon Elevation of Privilege Vulnerability
cvelistv5
CVE-2024-43562HIGHCVSS 7.5≥ 10.0.26100.0, < 10.0.26100.20332024-10-08
CVE-2024-43562 [HIGH] CWE-125 CVE-2024-43562: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2024-43516HIGHCVSS 7.8≥ 10.0.26100.0, < 10.0.26100.23032024-10-08
CVE-2024-43516 [HIGH] CWE-822 CVE-2024-43516: Windows Secure Kernel Mode Elevation of Privilege Vulnerability Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd