cbcvebase.

Microsoft Windows Server 2022 vulnerabilities

3,303 known vulnerabilities affecting microsoft/windows_server_2022.

Total CVEs
3,303
CISA KEV
104
actively exploited
Public exploits
75
Exploited in wild
136
Severity breakdown
CRITICAL99HIGH2369MEDIUM821LOW14

Vulnerabilities

Page 86 of 166
CVE-2022-37995P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.11292022-10-11
CVE-2022-37995 [HIGH] CVE-2022-37995: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-21287P3HIGHCVSS 7.8fixed in 10.0.20348.3091≥ 10.0.20348.0, < 10.0.20348.30912025-01-14
CVE-2025-21287 [HIGH] CWE-269 CVE-2025-21287: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2021-43223P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.20348.4052021-12-15
CVE-2021-43223 [HIGH] CVE-2021-43223: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2023-35353P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35353 [HIGH] CWE-59 CVE-2023-35353: Connected User Experiences and Telemetry Elevation of Privilege Vulnerability Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
nvd
CVE-2025-21382P3HIGHCVSS 7.8fixed in 10.0.20348.3091≥ 10.0.20348.0, < 10.0.20348.30912025-01-14
CVE-2025-21382 [HIGH] CWE-122 CVE-2025-21382: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-43530P3HIGHCVSS 7.8fixed in 10.0.20348.2849≥ 10.0.20348.0, < 10.0.20348.28492024-11-12
CVE-2024-43530 [HIGH] CWE-284 CVE-2024-43530: Windows Update Stack Elevation of Privilege Vulnerability Windows Update Stack Elevation of Privilege Vulnerability
nvd
CVE-2023-28272P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.16682023-04-11
CVE-2023-28272 [HIGH] CWE-191 CVE-2023-28272: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-21726P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.14872023-01-10
CVE-2023-21726 [HIGH] CWE-257 CVE-2023-21726: Windows Credential Manager User Interface Elevation of Privilege Vulnerability Windows Credential Manager User Interface Elevation of Privilege Vulnerability
nvd
CVE-2023-35363P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35363 [HIGH] CWE-122 CVE-2023-35363: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-35320P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35320 [HIGH] CWE-59 CVE-2023-35320: Connected User Experiences and Telemetry Elevation of Privilege Vulnerability Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
nvd
CVE-2025-47973P3HIGHCVSS 7.8fixed in 10.0.20348.3932≥ 10.0.20348.0, < 10.0.20348.39322025-07-08
CVE-2025-47973 [HIGH] CWE-126 CVE-2025-47973: Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges l Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2025-47971P3HIGHCVSS 7.8fixed in 10.0.20348.3932≥ 10.0.20348.0, < 10.0.20348.39322025-07-08
CVE-2025-47971 [HIGH] CWE-126 CVE-2025-47971: Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges l Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2023-21754P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.14872023-01-10
CVE-2023-21754 [HIGH] CWE-190 CVE-2023-21754: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43563P3HIGHCVSS 7.8fixed in 10.0.20348.2762≥ 10.0.20348.0, < 10.0.20348.27622024-10-08
CVE-2024-43563 [HIGH] CWE-591 CVE-2024-43563: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2023-35304P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35304 [HIGH] CWE-122 CVE-2023-35304: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-35328P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35328 [HIGH] CWE-197 CVE-2023-35328: Windows Transaction Manager Elevation of Privilege Vulnerability Windows Transaction Manager Elevation of Privilege Vulnerability
nvd
CVE-2023-35305P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35305 [HIGH] CWE-122 CVE-2023-35305: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-54894P3HIGHCVSS 7.8fixed in 10.0.20348.4106≥ 10.0.20348.0, < 10.0.20348.41712025-09-09
CVE-2025-54894 [HIGH] CWE-122 CVE-2025-54894: Local Security Authority Subsystem Service Elevation of Privilege Vulnerability Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
nvd
CVE-2023-35299P3HIGHCVSS 7.8≥ 10.0.20348.0, < 10.0.20348.18502023-07-11
CVE-2023-35299 [HIGH] CWE-125 CVE-2023-35299: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-30031P3HIGHCVSS 7.8fixed in 10.0.20348.2461≥ 10.0.20348.0, < 10.0.20348.24612024-05-14
CVE-2024-30031 [HIGH] CWE-416 CVE-2024-30031: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server 2022 vulnerabilities | cvebase