Microsoft Windows Server 2022 23H2 vulnerabilities

1,380 known vulnerabilities affecting microsoft/windows_server_2022_23h2.

Total CVEs
1,380
CISA KEV
51
actively exploited
Public exploits
23
Exploited in wild
19
Severity breakdown
CRITICAL22HIGH958MEDIUM394LOW6

Vulnerabilities

Page 45 of 69
CVE-2024-49119HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49119 [HIGH] CWE-843 CVE-2024-49119: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49107HIGHCVSS 7.3fixed in 10.0.25398.13082024-12-12
CVE-2024-49107 [HIGH] CWE-59 CVE-2024-49107: WmsRepair Service Elevation of Privilege Vulnerability WmsRepair Service Elevation of Privilege Vulnerability
nvd
CVE-2024-49126HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49126 [HIGH] CWE-416 CVE-2024-49126: Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
nvd
CVE-2024-49121HIGHCVSS 7.5fixed in 10.0.25398.13082024-12-12
CVE-2024-49121 [HIGH] CWE-476 CVE-2024-49121: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2024-49116HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49116 [HIGH] CWE-416 CVE-2024-49116: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49079HIGHCVSS 7.8fixed in 10.0.25398.13082024-12-12
CVE-2024-49079 [HIGH] CWE-416 CVE-2024-49079: Input Method Editor (IME) Remote Code Execution Vulnerability Input Method Editor (IME) Remote Code Execution Vulnerability
nvd
CVE-2024-49091HIGHCVSS 7.2fixed in 10.0.25398.13082024-12-12
CVE-2024-49091 [HIGH] CWE-591 CVE-2024-49091: Windows Domain Name Service Remote Code Execution Vulnerability Windows Domain Name Service Remote Code Execution Vulnerability
nvd
CVE-2024-49086HIGHCVSS 8.8fixed in 10.0.25398.13082024-12-12
CVE-2024-49086 [HIGH] CWE-122 CVE-2024-49086: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49097HIGHCVSS 7.0fixed in 10.0.25398.13082024-12-12
CVE-2024-49097 [HIGH] CWE-416 CVE-2024-49097: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2024-49076HIGHCVSS 7.8fixed in 10.0.25398.13082024-12-12
CVE-2024-49076 [HIGH] CWE-287 CVE-2024-49076: Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
nvd
CVE-2024-49084HIGHCVSS 7.0fixed in 10.0.25398.13082024-12-12
CVE-2024-49084 [HIGH] CWE-362 CVE-2024-49084: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-49075HIGHCVSS 7.5fixed in 10.0.25398.13082024-12-12
CVE-2024-49075 [HIGH] CWE-400 CVE-2024-49075: Windows Remote Desktop Services Denial of Service Vulnerability Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2024-49102HIGHCVSS 8.8fixed in 10.0.25398.13082024-12-12
CVE-2024-49102 [HIGH] CWE-122 CVE-2024-49102: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49072HIGHCVSS 7.8fixed in 10.0.25398.13082024-12-12
CVE-2024-49072 [HIGH] CWE-122 CVE-2024-49072: Windows Task Scheduler Elevation of Privilege Vulnerability Windows Task Scheduler Elevation of Privilege Vulnerability
nvd
CVE-2024-49113HIGHCVSS 7.5fixed in 10.0.25398.13082024-12-12
CVE-2024-49113 [HIGH] CWE-125 CVE-2024-49113: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2024-49106HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49106 [HIGH] CWE-416 CVE-2024-49106: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49118HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49118 [HIGH] CWE-416 CVE-2024-49118: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-49125HIGHCVSS 8.8fixed in 10.0.25398.13082024-12-12
CVE-2024-49125 [HIGH] CWE-122 CVE-2024-49125: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49127HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49127 [HIGH] CWE-416 CVE-2024-49127: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2024-49120HIGHCVSS 8.1fixed in 10.0.25398.13082024-12-12
CVE-2024-49120 [HIGH] CWE-453 CVE-2024-49120: Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd