Microsoft Windows Server 2022 vulnerabilities

2,817 known vulnerabilities affecting microsoft/windows_server_2022.

Total CVEs
2,817
CISA KEV
102
actively exploited
Public exploits
38
Exploited in wild
85
Severity breakdown
CRITICAL74HIGH2015MEDIUM717LOW11

Vulnerabilities

Page 80 of 141
CVE-2023-36394HIGHCVSS 7.0≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36394 [HIGH] CWE-59 CVE-2023-36394: Windows Search Service Elevation of Privilege Vulnerability Windows Search Service Elevation of Privilege Vulnerability
nvd
CVE-2023-36705HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36705 [HIGH] CWE-59 CVE-2023-36705: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2023-36427HIGHCVSS 7.0≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36427 [HIGH] CVE-2023-36427: Windows Hyper-V Elevation of Privilege Vulnerability Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2023-36025HIGHCVSS 8.8KEVfixed in 10.0.20348.2113≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36025 [HIGH] CVE-2023-36025: Windows SmartScreen Security Feature Bypass Vulnerability Windows SmartScreen Security Feature Bypass Vulnerability
nvd
CVE-2023-36395HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36395 [HIGH] CWE-190 CVE-2023-36395: Windows Deployment Services Denial of Service Vulnerability Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2023-36393HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36393 [HIGH] CWE-426 CVE-2023-36393: Windows User Interface Application Core Remote Code Execution Vulnerability Windows User Interface Application Core Remote Code Execution Vulnerability
nvd
CVE-2023-36392HIGHCVSS 7.5≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36392 [HIGH] CWE-126 CVE-2023-36392: DHCP Server Service Denial of Service Vulnerability DHCP Server Service Denial of Service Vulnerability
nvd
CVE-2023-36719HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36719 [HIGH] CWE-20 CVE-2023-36719: Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability
nvd
CVE-2023-36403HIGHCVSS 7.0≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36403 [HIGH] CWE-591 CVE-2023-36403: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-36033HIGHCVSS 7.8KEVfixed in 10.0.20348.2113≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36033 [HIGH] CWE-822 CVE-2023-36033: Windows DWM Core Library Elevation of Privilege Vulnerability Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-36425HIGHCVSS 8.0≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36425 [HIGH] CWE-122 CVE-2023-36425: Windows Distributed File System (DFS) Remote Code Execution Vulnerability Windows Distributed File System (DFS) Remote Code Execution Vulnerability
nvd
CVE-2023-36036HIGHCVSS 7.8KEVfixed in 10.0.20348.2113≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36036 [HIGH] CWE-122 CVE-2023-36036: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36423HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36423 [HIGH] CWE-122 CVE-2023-36423: Microsoft Remote Registry Service Remote Code Execution Vulnerability Microsoft Remote Registry Service Remote Code Execution Vulnerability
nvd
CVE-2023-36400HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36400 [HIGH] CWE-122 CVE-2023-36400: Windows HMAC Key Derivation Elevation of Privilege Vulnerability Windows HMAC Key Derivation Elevation of Privilege Vulnerability
nvd
CVE-2023-36017HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36017 [HIGH] CWE-843 CVE-2023-36017: Windows Scripting Engine Memory Corruption Vulnerability Windows Scripting Engine Memory Corruption Vulnerability
nvd
CVE-2023-36402HIGHCVSS 8.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36402 [HIGH] CWE-122 CVE-2023-36402: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-36399HIGHCVSS 7.1≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36399 [HIGH] CWE-59 CVE-2023-36399: Windows Storage Elevation of Privilege Vulnerability Windows Storage Elevation of Privilege Vulnerability
nvd
CVE-2023-36047HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36047 [HIGH] CWE-59 CVE-2023-36047: Windows Authentication Elevation of Privilege Vulnerability Windows Authentication Elevation of Privilege Vulnerability
nvd
CVE-2023-36424HIGHCVSS 7.8KEV≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36424 [HIGH] CWE-125 CVE-2023-36424: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36408HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.21132023-11-14
CVE-2023-36408 [HIGH] CWE-122 CVE-2023-36408: Windows Hyper-V Elevation of Privilege Vulnerability Windows Hyper-V Elevation of Privilege Vulnerability
nvd