Microsoft Windows Server 2022 23H2 vulnerabilities
1,380 known vulnerabilities affecting microsoft/windows_server_2022_23h2.
Total CVEs
1,380
CISA KEV
51
actively exploited
Public exploits
23
Exploited in wild
19
Severity breakdown
CRITICAL22HIGH958MEDIUM394LOW6
Vulnerabilities
Page 58 of 69
CVE-2024-38054HIGHCVSS 7.8fixed in 10.0.25398.10092024-07-09
CVE-2024-38054 [HIGH] CWE-122 CVE-2024-38054: Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38069HIGHCVSS 7.0fixed in 10.0.25398.10092024-07-09
CVE-2024-38069 [HIGH] CWE-347 CVE-2024-38069: Windows Enroll Engine Security Feature Bypass Vulnerability
Windows Enroll Engine Security Feature Bypass Vulnerability
nvd
CVE-2024-38068HIGHCVSS 7.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38068 [HIGH] CWE-400 CVE-2024-38068: Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
nvd
CVE-2024-38073HIGHCVSS 7.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38073 [HIGH] CWE-125 CVE-2024-38073: Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
nvd
CVE-2024-38072HIGHCVSS 7.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38072 [HIGH] CWE-476 CVE-2024-38072: Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
nvd
CVE-2024-38015HIGHCVSS 7.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38015 [HIGH] CWE-400 CVE-2024-38015: Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
nvd
CVE-2024-38085HIGHCVSS 7.8fixed in 10.0.25398.10092024-07-09
CVE-2024-38085 [HIGH] CWE-416 CVE-2024-38085: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-38050HIGHCVSS 7.8fixed in 10.0.25398.10092024-07-09
CVE-2024-38050 [HIGH] CWE-191 CVE-2024-38050: Windows Workstation Service Elevation of Privilege Vulnerability
Windows Workstation Service Elevation of Privilege Vulnerability
nvd
CVE-2024-38070HIGHCVSS 7.8fixed in 10.0.25398.10092024-07-09
CVE-2024-38070 [HIGH] CWE-693 CVE-2024-38070: Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability
Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability
nvd
CVE-2024-30079HIGHCVSS 7.8fixed in 10.0.25398.10092024-07-09
CVE-2024-30079 [HIGH] CWE-126 CVE-2024-30079: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2024-38067HIGHCVSS 7.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38067 [HIGH] CWE-400 CVE-2024-38067: Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
nvd
CVE-2024-38041MEDIUMCVSS 5.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38041 [MEDIUM] CWE-200 CVE-2024-38041: Windows Kernel Information Disclosure Vulnerability
Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2024-38013MEDIUMCVSS 6.7fixed in 10.0.25398.10092024-07-09
CVE-2024-38013 [MEDIUM] CWE-59 CVE-2024-38013: Microsoft Windows Server Backup Elevation of Privilege Vulnerability
Microsoft Windows Server Backup Elevation of Privilege Vulnerability
nvd
CVE-2024-38105MEDIUMCVSS 6.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38105 [MEDIUM] CWE-20 CVE-2024-38105: Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
nvd
CVE-2024-38099MEDIUMCVSS 5.9fixed in 10.0.25398.10092024-07-09
CVE-2024-38099 [MEDIUM] CWE-287 CVE-2024-38099: Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
nvd
CVE-2024-38048MEDIUMCVSS 6.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38048 [MEDIUM] CWE-125 CVE-2024-38048: Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability
Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability
nvd
CVE-2024-38101MEDIUMCVSS 6.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38101 [MEDIUM] CWE-125 CVE-2024-38101: Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
nvd
CVE-2024-38102MEDIUMCVSS 6.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38102 [MEDIUM] CWE-125 CVE-2024-38102: Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
nvd
CVE-2024-35270MEDIUMCVSS 5.3fixed in 10.0.25398.10092024-07-09
CVE-2024-35270 [MEDIUM] CWE-400 CVE-2024-35270: Windows iSCSI Service Denial of Service Vulnerability
Windows iSCSI Service Denial of Service Vulnerability
nvd
CVE-2024-38027MEDIUMCVSS 6.5fixed in 10.0.25398.10092024-07-09
CVE-2024-38027 [MEDIUM] CWE-400 CVE-2024-38027: Windows Line Printer Daemon Service Denial of Service Vulnerability
Windows Line Printer Daemon Service Denial of Service Vulnerability
nvd