Microsoft Windows Server 2022 vulnerabilities

2,817 known vulnerabilities affecting microsoft/windows_server_2022.

Total CVEs
2,817
CISA KEV
103
actively exploited
Public exploits
41
Exploited in wild
85
Severity breakdown
CRITICAL74HIGH2015MEDIUM717LOW11

Vulnerabilities

Page 140 of 141
CVE-2021-41338MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.20348.2882021-10-13
CVE-2021-41338 [MEDIUM] CVE-2021-41338: Windows AppContainer Firewall Rules Security Feature Bypass Vulnerability Windows AppContainer Firewall Rules Security Feature Bypass Vulnerability
nvd
CVE-2021-38662MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.20348.2882021-10-13
CVE-2021-38662 [MEDIUM] CVE-2021-38662: Windows Fast FAT File System Driver Information Disclosure Vulnerability Windows Fast FAT File System Driver Information Disclosure Vulnerability
nvd
CVE-2021-41361LOWCVSS 3.5≥ 10.0.0, < 10.0.20348.2882021-10-13
CVE-2021-41361 [LOW] CVE-2021-41361: Active Directory Federation Server Spoofing Vulnerability Active Directory Federation Server Spoofing Vulnerability
nvd
CVE-2021-36965CRITICALCVSS 9.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36965 [CRITICAL] CVE-2021-36965: Windows WLAN AutoConfig Service Remote Code Execution Vulnerability Windows WLAN AutoConfig Service Remote Code Execution Vulnerability
nvd
CVE-2021-40444HIGHCVSS 7.8KEVPoCfixed in 10.0.20348.230≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-40444 [HIGH] CWE-22 CVE-2021-40444: <p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affect Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using specially-crafted Microsoft Office documents. An attacker could craft a malicious ActiveX control to be used by a Microsoft Office document that
nvd
CVE-2021-38634HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38634 [HIGH] CWE-269 CVE-2021-38634: Microsoft Windows Update Client Elevation of Privilege Vulnerability Microsoft Windows Update Client Elevation of Privilege Vulnerability
nvd
CVE-2021-26435HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-26435 [HIGH] CWE-787 CVE-2021-26435: Windows Scripting Engine Memory Corruption Vulnerability Windows Scripting Engine Memory Corruption Vulnerability
nvd
CVE-2021-38638HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38638 [HIGH] CWE-269 CVE-2021-38638: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2021-36973HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36973 [HIGH] CWE-269 CVE-2021-36973: Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability
nvd
CVE-2021-38630HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38630 [HIGH] CWE-269 CVE-2021-38630: Windows Event Tracing Elevation of Privilege Vulnerability Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-36974HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36974 [HIGH] Windows SMB Elevation of Privilege Vulnerability Windows SMB Elevation of Privilege Vulnerability Windows SMB Elevation of Privilege Vulnerability
cvelistv5
CVE-2021-38671HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38671 [HIGH] CWE-269 CVE-2021-38671: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-40447HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-40447 [HIGH] CWE-269 CVE-2021-40447: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-36960HIGHCVSS 7.5≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36960 [HIGH] Windows SMB Information Disclosure Vulnerability Windows SMB Information Disclosure Vulnerability Windows SMB Information Disclosure Vulnerability
cvelistv5
CVE-2021-38633HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38633 [HIGH] CWE-269 CVE-2021-38633: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-36954HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36954 [HIGH] CWE-269 CVE-2021-36954: Windows Bind Filter Driver Elevation of Privilege Vulnerability Windows Bind Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-36964HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36964 [HIGH] CWE-269 CVE-2021-36964: Windows Event Tracing Elevation of Privilege Vulnerability Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-36955HIGHCVSS 7.8KEVfixed in 10.0.20348.230≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-36955 [HIGH] CVE-2021-36955: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-38667HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38667 [HIGH] CWE-269 CVE-2021-38667: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-38639HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.2302021-09-15
CVE-2021-38639 [HIGH] Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability
cvelistv5