Microsoft Windows Server 2022 23H2 vulnerabilities

1,380 known vulnerabilities affecting microsoft/windows_server_2022_23h2.

Total CVEs
1,380
CISA KEV
51
actively exploited
Public exploits
23
Exploited in wild
19
Severity breakdown
CRITICAL22HIGH958MEDIUM394LOW6

Vulnerabilities

Page 53 of 69
CVE-2024-38253HIGHCVSS 7.8fixed in 10.0.25398.11282024-09-10
CVE-2024-38253 [HIGH] CWE-416 CVE-2024-38253: Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
nvd
CVE-2024-38252HIGHCVSS 7.8fixed in 10.0.25398.11282024-09-10
CVE-2024-38252 [HIGH] CWE-416 CVE-2024-38252: Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
nvd
CVE-2024-38258HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38258 [HIGH] CWE-23 CVE-2024-38258: Windows Remote Desktop Licensing Service Information Disclosure Vulnerability Windows Remote Desktop Licensing Service Information Disclosure Vulnerability
nvd
CVE-2024-38045HIGHCVSS 8.1fixed in 10.0.25398.11282024-09-10
CVE-2024-38045 [HIGH] CWE-122 CVE-2024-38045: Windows TCP/IP Remote Code Execution Vulnerability Windows TCP/IP Remote Code Execution Vulnerability
nvd
CVE-2024-43454HIGHCVSS 7.1fixed in 10.0.25398.11282024-09-10
CVE-2024-43454 [HIGH] CWE-23 CVE-2024-43454: Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
nvd
CVE-2024-38257HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38257 [HIGH] CWE-908 CVE-2024-38257: Microsoft AllJoyn API Information Disclosure Vulnerability Microsoft AllJoyn API Information Disclosure Vulnerability
nvd
CVE-2024-38236HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38236 [HIGH] CWE-400 CVE-2024-38236: DHCP Server Service Denial of Service Vulnerability DHCP Server Service Denial of Service Vulnerability
nvd
CVE-2024-38237HIGHCVSS 7.8fixed in 10.0.25398.11282024-09-10
CVE-2024-38237 [HIGH] CWE-122 CVE-2024-38237: Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-30073HIGHCVSS 7.8fixed in 10.0.25398.11282024-09-10
CVE-2024-30073 [HIGH] CWE-41 CVE-2024-30073: Windows Security Zone Mapping Security Feature Bypass Vulnerability Windows Security Zone Mapping Security Feature Bypass Vulnerability
nvd
CVE-2024-38119HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38119 [HIGH] CWE-416 CVE-2024-38119: Windows Network Address Translation (NAT) Remote Code Execution Vulnerability Windows Network Address Translation (NAT) Remote Code Execution Vulnerability
nvd
CVE-2024-38231HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38231 [HIGH] CWE-285 CVE-2024-38231: Windows Remote Desktop Licensing Service Denial of Service Vulnerability Windows Remote Desktop Licensing Service Denial of Service Vulnerability
nvd
CVE-2024-38014HIGHCVSS 7.8KEVfixed in 10.0.25398.11282024-09-10
CVE-2024-38014 [HIGH] CWE-269 CVE-2024-38014: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2024-38260HIGHCVSS 8.8fixed in 10.0.25398.11282024-09-10
CVE-2024-38260 [HIGH] CWE-908 CVE-2024-38260: Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
nvd
CVE-2024-38243HIGHCVSS 7.8fixed in 10.0.25398.11282024-09-10
CVE-2024-38243 [HIGH] CWE-20 CVE-2024-38243: Kernel Streaming Service Driver Elevation of Privilege Vulnerability Kernel Streaming Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38239HIGHCVSS 7.2fixed in 10.0.25398.11282024-09-10
CVE-2024-38239 [HIGH] CWE-1390 CVE-2024-38239: Windows Kerberos Elevation of Privilege Vulnerability Windows Kerberos Elevation of Privilege Vulnerability
nvd
CVE-2024-38263HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38263 [HIGH] CWE-591 CVE-2024-38263: Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
nvd
CVE-2024-43467HIGHCVSS 7.5fixed in 10.0.25398.11282024-09-10
CVE-2024-43467 [HIGH] CWE-362 CVE-2024-43467: Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
nvd
CVE-2024-38242HIGHCVSS 7.8fixed in 10.0.25398.11282024-09-10
CVE-2024-38242 [HIGH] CWE-122 CVE-2024-38242: Kernel Streaming Service Driver Elevation of Privilege Vulnerability Kernel Streaming Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38217MEDIUMCVSS 5.4KEVfixed in 10.0.25398.11282024-09-10
CVE-2024-38217 [MEDIUM] CWE-693 CVE-2024-38217: Windows Mark of the Web Security Feature Bypass Vulnerability Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2024-38234MEDIUMCVSS 6.5fixed in 10.0.25398.11282024-09-10
CVE-2024-38234 [MEDIUM] CWE-20 CVE-2024-38234: Windows Networking Denial of Service Vulnerability Windows Networking Denial of Service Vulnerability
nvd