Microsoft Windows Server 2022 vulnerabilities

2,817 known vulnerabilities affecting microsoft/windows_server_2022.

Total CVEs
2,817
CISA KEV
103
actively exploited
Public exploits
38
Exploited in wild
85
Severity breakdown
CRITICAL74HIGH2015MEDIUM717LOW11

Vulnerabilities

Page 109 of 141
CVE-2022-37966HIGHCVSS 8.1vN/A2022-11-09
CVE-2022-37966 [HIGH] CVE-2022-37966: Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability
nvd
CVE-2022-41093HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41093 [HIGH] CWE-362 CVE-2022-41093: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-38023HIGHCVSS 8.1≥ 10.0.20348.0, < 10.0.20348.18502022-11-09
CVE-2022-38023 [HIGH] Netlogon RPC Elevation of Privilege Vulnerability Netlogon RPC Elevation of Privilege Vulnerability Netlogon RPC Elevation of Privilege Vulnerability
cvelistv5
CVE-2022-41053HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41053 [HIGH] Windows Kerberos Denial of Service Vulnerability Windows Kerberos Denial of Service Vulnerability Windows Kerberos Denial of Service Vulnerability
cvelistv5
CVE-2022-41113HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.14872022-11-09
CVE-2022-41113 [HIGH] CVE-2022-41113: Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
nvd
CVE-2022-41058HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41058 [HIGH] CVE-2022-41058: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2022-37967HIGHCVSS 7.2≥ 10.0.20348.0, < 10.0.20348.20312022-11-09
CVE-2022-37967 [HIGH] CVE-2022-37967: Windows Kerberos Elevation of Privilege Vulnerability Windows Kerberos Elevation of Privilege Vulnerability
nvd
CVE-2022-41052HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41052 [HIGH] CVE-2022-41052: Windows Graphics Component Remote Code Execution Vulnerability Windows Graphics Component Remote Code Execution Vulnerability
nvd
CVE-2022-41054HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41054 [HIGH] CVE-2022-41054: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd
CVE-2022-41045HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41045 [HIGH] CWE-362 CVE-2022-41045: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-41114HIGHCVSS 7.0≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41114 [HIGH] CWE-362 CVE-2022-41114: Windows Bind Filter Driver Elevation of Privilege Vulnerability Windows Bind Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-41047HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41047 [HIGH] CVE-2022-41047: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2022-41056HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41056 [HIGH] CVE-2022-41056: Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability
nvd
CVE-2022-41125HIGHCVSS 7.8KEVfixed in 10.0.20348.1249≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41125 [HIGH] CWE-787 CVE-2022-41125: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2022-41096HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41096 [HIGH] CVE-2022-41096: Microsoft DWM Core Library Elevation of Privilege Vulnerability Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2022-41118HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41118 [HIGH] CWE-362 CVE-2022-41118: Windows Scripting Languages Remote Code Execution Vulnerability Windows Scripting Languages Remote Code Execution Vulnerability
nvd
CVE-2022-41086MEDIUMCVSS 6.4≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41086 [MEDIUM] CWE-362 CVE-2022-41086: Windows Group Policy Elevation of Privilege Vulnerability Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2022-41049MEDIUMCVSS 5.4KEVfixed in 10.0.20348.1249≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41049 [MEDIUM] CVE-2022-41049: Windows Mark of the Web Security Feature Bypass Vulnerability Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2022-41055MEDIUMCVSS 5.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41055 [MEDIUM] CVE-2022-41055: Windows Human Interface Device Information Disclosure Vulnerability Windows Human Interface Device Information Disclosure Vulnerability
nvd
CVE-2022-41097MEDIUMCVSS 6.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41097 [MEDIUM] CVE-2022-41097: Network Policy Server (NPS) RADIUS Protocol Information Disclosure Vulnerability Network Policy Server (NPS) RADIUS Protocol Information Disclosure Vulnerability
nvd