cbcvebase.

Microsoft Windows Server 2022 23H2 vulnerabilities

1,556 known vulnerabilities affecting microsoft/windows_server_2022_23h2.

Total CVEs
1,556
CISA KEV
52
actively exploited
Public exploits
39
Exploited in wild
63
Severity breakdown
CRITICAL25HIGH1099MEDIUM426LOW6

Vulnerabilities

Page 27 of 78
CVE-2026-41088P3HIGHCVSS 7.8fixed in 10.0.25398.23302026-05-12
CVE-2026-41088 [HIGH] CWE-73 CVE-2026-41088: Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver f Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-34344P3HIGHCVSS 7.8fixed in 10.0.25398.23302026-05-12
CVE-2026-34344 [HIGH] CWE-843 CVE-2026-34344: Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver f Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-34330P3HIGHCVSS 7.8fixed in 10.0.25398.23302026-05-12
CVE-2026-34330 [HIGH] CWE-190 CVE-2026-34330: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40408P3HIGHCVSS 7.8fixed in 10.0.25398.23302026-05-12
CVE-2026-40408 [HIGH] CWE-416 CVE-2026-40408: Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges lo Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-27915P3HIGHCVSS 7.8fixed in 10.0.25398.22742026-04-14
CVE-2026-27915 [HIGH] CWE-416 CVE-2026-27915: Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker t Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-26162P3HIGHCVSS 7.8fixed in 10.0.25398.22742026-04-14
CVE-2026-26162 [HIGH] CWE-843 CVE-2026-26162: Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized at Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-26163P3HIGHCVSS 7.8fixed in 10.0.25398.22742026-04-14
CVE-2026-26163 [HIGH] CWE-415 CVE-2026-26163: Double free in Windows Kernel allows an authorized attacker to elevate privileges locally. Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20874P3HIGHCVSS 7.8fixed in 10.0.25398.20922026-01-13
CVE-2026-20874 [HIGH] CWE-362 CVE-2026-20874: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20918P3HIGHCVSS 7.8fixed in 10.0.25398.20922026-01-13
CVE-2026-20918 [HIGH] CWE-362 CVE-2026-20918: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20873P3HIGHCVSS 7.8fixed in 10.0.25398.20922026-01-13
CVE-2026-20873 [HIGH] CWE-362 CVE-2026-20873: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20861P3HIGHCVSS 7.8fixed in 10.0.25398.20922026-01-13
CVE-2026-20861 [HIGH] CWE-362 CVE-2026-20861: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20867P3HIGHCVSS 7.8fixed in 10.0.25398.20922026-01-13
CVE-2026-20867 [HIGH] CWE-362 CVE-2026-20867: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20866P3HIGHCVSS 7.8fixed in 10.0.25398.20922026-01-13
CVE-2026-20866 [HIGH] CWE-362 CVE-2026-20866: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-27924P3HIGHCVSS 7.8fixed in 10.0.25398.22742026-04-14
CVE-2026-27924 [HIGH] CWE-416 CVE-2026-27924: Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-38019P3HIGHCVSS 7.2fixed in 10.0.25398.10092024-07-09
CVE-2024-38019 [HIGH] CWE-190 CVE-2024-38019: Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
nvd
CVE-2025-49732P3HIGHCVSS 7.8fixed in 10.0.25398.17322025-07-08
CVE-2025-49732 [HIGH] CWE-122 CVE-2025-49732: Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-26181P3HIGHCVSS 7.8fixed in 10.0.25398.22742026-04-14
CVE-2026-26181 [HIGH] CWE-362 CVE-2026-26181: Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privilege Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-27484P3HIGHCVSS 7.5fixed in 10.0.25398.15512025-04-08
CVE-2025-27484 [HIGH] CWE-591 CVE-2025-27484: Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges over a network.
nvd
CVE-2024-38085P3HIGHCVSS 7.8fixed in 10.0.25398.10092024-07-09
CVE-2024-38085 [HIGH] CWE-416 CVE-2024-38085: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-30032P3HIGHCVSS 7.8fixed in 10.0.25398.8872024-05-14
CVE-2024-30032 [HIGH] CWE-416 CVE-2024-30032: Windows DWM Core Library Elevation of Privilege Vulnerability Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server 2022 23H2 vulnerabilities | cvebase