Microsoft Windows 7 vulnerabilities
881 known vulnerabilities affecting microsoft/windows_7.
Total CVEs
881
CISA KEV
35
actively exploited
Public exploits
45
Exploited in wild
50
Severity breakdown
CRITICAL25HIGH656MEDIUM198LOW2
Vulnerabilities
Page 26 of 45
CVE-2020-1513P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1513 [HIGH] CVE-2020-1513: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1546P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1546 [HIGH] CVE-2020-1546: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1545P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1545 [HIGH] CVE-2020-1545: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1516P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1516 [HIGH] CVE-2020-1516: An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly hand
An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the
nvd
CVE-2020-1539P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1539 [HIGH] CVE-2020-1539: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1489P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1489 [HIGH] CVE-2020-1489: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1544P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1544 [HIGH] CVE-2020-1544: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1535P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1535 [HIGH] CVE-2020-1535: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2022-21908P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.258292022-01-11
CVE-2022-21908 [HIGH] CVE-2022-21908: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-16975P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16975 [HIGH] CVE-2020-16975: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16912P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16912 [HIGH] CVE-2020-16912: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16974P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16974 [HIGH] CVE-2020-16974: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16972P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16972 [HIGH] CVE-2020-16972: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16936P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16936 [HIGH] CVE-2020-16936: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2019-1162P3HIGHCVSS 7.8≥ 6.1.0, < publication2019-08-14
CVE-2019-1162 [HIGH] CWE-269 CVE-2019-1162: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).
An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then install programs; view, change, or delete data; or create new accounts with fu
nvd
CVE-2020-16973P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16973 [HIGH] CVE-2020-16973: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2021-1695P3HIGHCVSS 7.8≥ 6.1.0, < publication2021-01-12
CVE-2021-1695 [HIGH] CWE-269 CVE-2021-1695: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26798P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-26798 [HIGH] CVE-2022-26798: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-26425P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.256852021-08-12
CVE-2021-26425 [HIGH] CWE-59 CVE-2021-26425: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-1640P3HIGHCVSS 7.8≥ 6.1.0, < publication2021-03-11
CVE-2021-1640 [HIGH] CWE-269 CVE-2021-1640: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd