Microsoft Windows Server 2022 vulnerabilities
2,817 known vulnerabilities affecting microsoft/windows_server_2022.
Total CVEs
2,817
CISA KEV
103
actively exploited
Public exploits
38
Exploited in wild
85
Severity breakdown
CRITICAL74HIGH2015MEDIUM717LOW11
Vulnerabilities
Page 110 of 141
CVE-2022-38015MEDIUMCVSS 6.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-38015 [MEDIUM] Windows Hyper-V Denial of Service Vulnerability
Windows Hyper-V Denial of Service Vulnerability
Windows Hyper-V Denial of Service Vulnerability
cvelistv5
CVE-2022-41090MEDIUMCVSS 5.9≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41090 [MEDIUM] CWE-362 CVE-2022-41090: Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
nvd
CVE-2022-41098MEDIUMCVSS 5.5≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41098 [MEDIUM] Windows GDI+ Information Disclosure Vulnerability
Windows GDI+ Information Disclosure Vulnerability
Windows GDI+ Information Disclosure Vulnerability
cvelistv5
CVE-2022-41091MEDIUMCVSS 5.4KEVfixed in 10.0.20348.1249≥ 10.0.20348.0, < 10.0.20348.12492022-11-09
CVE-2022-41091 [MEDIUM] CWE-863 CVE-2022-41091: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2022-38051HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-38051 [HIGH] CVE-2022-38051: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-37997HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37997 [HIGH] CVE-2022-37997: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-38041HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-38041 [HIGH] CVE-2022-38041: Windows Secure Channel Denial of Service Vulnerability
Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2022-37979HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37979 [HIGH] CVE-2022-37979: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2022-37975HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37975 [HIGH] CVE-2022-37975: Windows Group Policy Elevation of Privilege Vulnerability
Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2022-37973HIGHCVSS 7.7≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37973 [HIGH] CVE-2022-37973: Windows Local Session Manager (LSM) Denial of Service Vulnerability
Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2022-24504HIGHCVSS 8.1≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-24504 [HIGH] CWE-362 CVE-2022-24504: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-37989HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37989 [HIGH] CVE-2022-37989: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-37976HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37976 [HIGH] CVE-2022-37976: Active Directory Certificate Services Elevation of Privilege Vulnerability
Active Directory Certificate Services Elevation of Privilege Vulnerability
nvd
CVE-2022-37980HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37980 [HIGH] CVE-2022-37980: Windows DHCP Client Elevation of Privilege Vulnerability
Windows DHCP Client Elevation of Privilege Vulnerability
nvd
CVE-2022-38038HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-38038 [HIGH] CVE-2022-38038: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-38044HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-38044 [HIGH] CVE-2022-38044: Windows CD-ROM File System Driver Remote Code Execution Vulnerability
Windows CD-ROM File System Driver Remote Code Execution Vulnerability
nvd
CVE-2022-37978HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37978 [HIGH] CVE-2022-37978: Windows Active Directory Certificate Services Security Feature Bypass
Windows Active Directory Certificate Services Security Feature Bypass
nvd
CVE-2022-37998HIGHCVSS 7.7≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37998 [HIGH] CVE-2022-37998: Windows Local Session Manager (LSM) Denial of Service Vulnerability
Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2022-37995HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37995 [HIGH] CVE-2022-37995: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-38047HIGHCVSS 8.1≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-38047 [HIGH] CWE-362 CVE-2022-38047: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd