Microsoft Windows 7 vulnerabilities
881 known vulnerabilities affecting microsoft/windows_7.
Total CVEs
881
CISA KEV
35
actively exploited
Public exploits
45
Exploited in wild
50
Severity breakdown
CRITICAL25HIGH656MEDIUM198LOW2
Vulnerabilities
Page 12 of 45
CVE-2022-41048P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.262212022-11-09
CVE-2022-41048 [HIGH] CVE-2022-41048: Microsoft ODBC Driver Remote Code Execution Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2022-41047P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.262212022-11-09
CVE-2022-41047 [HIGH] CVE-2022-41047: Microsoft ODBC Driver Remote Code Execution Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2023-21732P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.263212023-01-10
CVE-2023-21732 [HIGH] CWE-121 CVE-2023-21732: Microsoft ODBC Driver Remote Code Execution Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2023-21681P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.263212023-01-10
CVE-2023-21681 [HIGH] CWE-191 CVE-2023-21681: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2021-43883P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.257962021-12-15
CVE-2021-43883 [HIGH] CVE-2021-43883: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2019-1159P3HIGHCVSS 7.8≥ 6.1.0, < publication2019-08-14
CVE-2019-1159 [HIGH] CVE-2019-1159: An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
To exploit this vulnerability, a
nvd
CVE-2022-37987P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.261742022-10-11
CVE-2022-37987 [HIGH] CVE-2022-37987: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-37989P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.261742022-10-11
CVE-2022-37989 [HIGH] CVE-2022-37989: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-34714P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.260652022-08-09
CVE-2022-34714 [HIGH] CWE-94 CVE-2022-34714: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2023-21556P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.263212023-01-10
CVE-2023-21556 [HIGH] CWE-191 CVE-2023-21556: Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
nvd
CVE-2022-35745P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.260652023-05-31
CVE-2022-35745 [HIGH] CVE-2022-35745: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-35752P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.260652023-05-31
CVE-2022-35752 [HIGH] CVE-2022-35752: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-35753P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.260652023-05-31
CVE-2022-35753 [HIGH] CVE-2022-35753: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-24500HIGHCVSS 8.8ExploitedRansomware≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-24500 [HIGH] Windows SMB Remote Code Execution Vulnerability
Windows SMB Remote Code Execution Vulnerability
Windows SMB Remote Code Execution Vulnerability
cvelistv5
CVE-2022-30211P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.260222022-07-12
CVE-2022-30211 [HIGH] CVE-2022-30211: Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
nvd
CVE-2020-17047P3HIGHCVSS 7.5≥ 6.1.0, < publication2020-11-11
CVE-2020-17047 [HIGH] CVE-2020-17047: Windows Network File System Denial of Service Vulnerability
Windows Network File System Denial of Service Vulnerability
nvd
CVE-2021-43893P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.257962021-12-15
CVE-2021-43893 [HIGH] CWE-668 CVE-2021-43893: Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
nvd
CVE-2021-31971P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.25632≥ 6.1.0, < publication2021-06-08
CVE-2021-31971 [HIGH] CVE-2021-31971: Windows HTML Platforms Security Feature Bypass Vulnerability
Windows HTML Platforms Security Feature Bypass Vulnerability
nvd
CVE-2020-1031P3HIGHCVSS 7.5≥ 6.1.0, < publication2020-09-11
CVE-2020-1031 [HIGH] CVE-2020-1031: <p>An information disclosure vulnerability exists in the way that the Windows Server DHCP service im
An information disclosure vulnerability exists in the way that the Windows Server DHCP service improperly discloses the contents of its memory.
To exploit the vulnerability, an unauthenticated attacker could send a specially crafted packet to an affected DHCP server. An attacker who successfully exploited this vulnerability could obtain information to further c
nvd
CVE-2021-34446P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.25661≥ 6.1.0, < 1.0012021-07-16
CVE-2021-34446 [HIGH] CVE-2021-34446: Windows HTML Platforms Security Feature Bypass Vulnerability
Windows HTML Platforms Security Feature Bypass Vulnerability
nvd