cbcvebase.

Microsoft Windows 7 vulnerabilities

881 known vulnerabilities affecting microsoft/windows_7.

Total CVEs
881
CISA KEV
35
actively exploited
Public exploits
45
Exploited in wild
50
Severity breakdown
CRITICAL25HIGH656MEDIUM198LOW2

Vulnerabilities

Page 14 of 45
CVE-2022-38047P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.261742022-10-11
CVE-2022-38047 [HIGH] CWE-362 CVE-2022-38047: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-33634P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.261742022-10-11
CVE-2022-33634 [HIGH] CWE-362 CVE-2022-33634: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-34702P3HIGHCVSS 8.1≥ 6.1.0, < 6.1.7601.260652022-08-09
CVE-2022-34702 [HIGH] CWE-362 CVE-2022-34702: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-38051P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.261742022-10-11
CVE-2022-38051 [HIGH] CVE-2022-38051: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-30140P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.259842022-06-15
CVE-2022-30140 [HIGH] CVE-2022-30140: Windows iSCSI Discovery Service Remote Code Execution Vulnerability Windows iSCSI Discovery Service Remote Code Execution Vulnerability
nvd
CVE-2022-24474P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-24474 [HIGH] CVE-2022-24474: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21557P3CRITICALCVSS 9.1≥ 6.1.0, < 6.1.7601.263212023-01-10
CVE-2023-21557 [CRITICAL] CWE-190 CVE-2023-21557: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2022-30220P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.260222022-07-12
CVE-2022-30220 [HIGH] CVE-2022-30220: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2019-1057P3HIGHCVSS 7.5≥ 6.1.0, < publication2019-08-14
CVE-2019-1057 [HIGH] CWE-611 CVE-2019-1057: A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser proce A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input. An attacker who successfully exploited the vulnerability could run malicious code remotely to take control of the user’s system. To exploit the vulnerability, an attacker could host a specially crafted website designed to invoke MSXML thr
nvd
CVE-2021-26882P3HIGHCVSS 7.8≥ 6.1.0, < publication2021-03-11
CVE-2021-26882 [HIGH] CVE-2021-26882: Remote Access API Elevation of Privilege Vulnerability Remote Access API Elevation of Privilege Vulnerability
nvd
CVE-2022-30149P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.259842022-06-15
CVE-2022-30149 [HIGH] CVE-2022-30149: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2022-30143P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.259842022-06-15
CVE-2022-30143 [HIGH] CVE-2022-30143: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2022-30146P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.259842022-06-15
CVE-2022-30146 [HIGH] CVE-2022-30146: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2018-8251P3HIGHCVSS 7.5v32-bit Systems Service Pack 1vx64-based Systems Service Pack 12018-06-14
CVE-2018-8251 [HIGH] CWE-787 CVE-2018-8251: A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka "Media Foundation Memory Corruption Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2022-30160P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259842022-06-15
CVE-2022-30160 [HIGH] CVE-2022-30160: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-22034P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.260222022-07-12
CVE-2022-22034 [HIGH] CWE-416 CVE-2022-22034: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-22000P3HIGHCVSS 7.8vsp1≥ 6.1.0, < 6.1.7601.258602022-02-09
CVE-2022-22000 [HIGH] CVE-2022-22000: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-22026P3HIGHCVSS 8.8≥ 6.1.0, < 6.1.7601.260222022-07-12
CVE-2022-22026 [HIGH] CWE-787 CVE-2022-22026: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-21843P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.258292022-01-11
CVE-2022-21843 [HIGH] CVE-2022-21843: Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
nvd
CVE-2022-22037P3HIGHCVSS 7.5≥ 6.1.0, < 6.1.7601.260222022-07-12
CVE-2022-22037 [HIGH] CVE-2022-22037: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
Microsoft Windows 7 vulnerabilities | cvebase