Microsoft Windows 7 vulnerabilities
906 known vulnerabilities affecting microsoft/windows_7.
Total CVEs
906
CISA KEV
36
actively exploited
Public exploits
47
Exploited in wild
53
Severity breakdown
CRITICAL26HIGH674MEDIUM204LOW2
Vulnerabilities
Page 27 of 46
CVE-2020-1535P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-08-17
CVE-2020-1535 [HIGH] CVE-2020-1535: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2022-21908P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.258292022-01-11
CVE-2022-21908 [HIGH] CVE-2022-21908: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-16975P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16975 [HIGH] CVE-2020-16975: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16912P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16912 [HIGH] CVE-2020-16912: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16974P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16974 [HIGH] CVE-2020-16974: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16972P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16972 [HIGH] CVE-2020-16972: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2021-1640P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.245662021-03-11
CVE-2021-1640 [HIGH] CWE-269 CVE-2021-1640: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-16936P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16936 [HIGH] CVE-2020-16936: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2021-26425P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.256852021-08-12
CVE-2021-26425 [HIGH] CWE-59 CVE-2021-26425: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2019-1162P3HIGHCVSS 7.8≥ 6.1.0, < publication2019-08-14
CVE-2019-1162 [HIGH] CWE-269 CVE-2019-1162: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).
An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then install programs; view, change, or delete data; or create new accounts with fu
nvd
CVE-2020-16973P3HIGHCVSS 7.8≥ 6.1.0, < publication2020-10-16
CVE-2020-16973 [HIGH] CVE-2020-16973: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2021-26898P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.245662021-03-11
CVE-2021-26898 [HIGH] CVE-2021-26898: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-26875P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.245662021-03-11
CVE-2021-26875 [HIGH] CVE-2021-26875: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2021-1695P3HIGHCVSS 7.8≥ 6.1.0, < publication2021-01-12
CVE-2021-1695 [HIGH] CWE-269 CVE-2021-1695: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26798P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-26798 [HIGH] CVE-2022-26798: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-26878P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.245662021-03-11
CVE-2021-26878 [HIGH] CVE-2021-26878: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-1661P3HIGHCVSS 7.8≥ 6.1.0, < publication2021-01-12
CVE-2021-1661 [HIGH] CWE-665 CVE-2021-1661: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2022-26796P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-26796 [HIGH] CVE-2022-26796: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26802P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-26802 [HIGH] CVE-2022-26802: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26801P3HIGHCVSS 7.8≥ 6.1.0, < 6.1.7601.259242022-04-15
CVE-2022-26801 [HIGH] CVE-2022-26801: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd