Microsoft Windows Server 2022 23H2 vulnerabilities

1,380 known vulnerabilities affecting microsoft/windows_server_2022_23h2.

Total CVEs
1,380
CISA KEV
51
actively exploited
Public exploits
23
Exploited in wild
19
Severity breakdown
CRITICAL22HIGH958MEDIUM394LOW6

Vulnerabilities

Page 65 of 69
CVE-2024-26217LOWCVSS 3.3fixed in 10.0.25398.8872024-04-09
CVE-2024-26217 [LOW] CWE-125 CVE-2024-26217: Windows Remote Access Connection Manager Information Disclosure Vulnerability Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2024-21432HIGHCVSS 7.0fixed in 10.0.25398.7632024-03-12
CVE-2024-21432 [HIGH] CWE-59 CVE-2024-21432: Windows Update Stack Elevation of Privilege Vulnerability Windows Update Stack Elevation of Privilege Vulnerability
nvd
CVE-2024-26173HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-26173 [HIGH] CWE-20 CVE-2024-26173: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26169HIGHCVSS 7.8KEVfixed in 10.0.25398.7632024-03-12
CVE-2024-26169 [HIGH] CWE-269 CVE-2024-26169: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21433HIGHCVSS 7.0fixed in 10.0.25398.7632024-03-12
CVE-2024-21433 [HIGH] CWE-367 CVE-2024-21433: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2024-21442HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-21442 [HIGH] CWE-170 CVE-2024-21442: Windows USB Print Driver Elevation of Privilege Vulnerability Windows USB Print Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-21434HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-21434 [HIGH] CWE-197 CVE-2024-21434: Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability
nvd
CVE-2024-26166HIGHCVSS 8.8fixed in 10.0.25398.7632024-03-12
CVE-2024-26166 [HIGH] CWE-122 CVE-2024-26166: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-26178HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-26178 [HIGH] CWE-122 CVE-2024-26178: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21436HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-21436 [HIGH] CWE-284 CVE-2024-21436: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2024-21439HIGHCVSS 7.0fixed in 10.0.25398.7632024-03-12
CVE-2024-21439 [HIGH] CWE-416 CVE-2024-21439: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2024-26162HIGHCVSS 8.8fixed in 10.0.25398.7632024-03-12
CVE-2024-26162 [HIGH] CWE-681 CVE-2024-26162: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-21437HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-21437 [HIGH] CWE-416 CVE-2024-21437: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-26159HIGHCVSS 8.8fixed in 10.0.25398.8302024-03-12
CVE-2024-26159 [HIGH] CWE-122 CVE-2024-26159: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-21438HIGHCVSS 7.5fixed in 10.0.25398.8302024-03-12
CVE-2024-21438 [HIGH] CWE-369 CVE-2024-21438: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2024-21451HIGHCVSS 8.8fixed in 10.0.25398.8302024-03-12
CVE-2024-21451 [HIGH] CWE-197 CVE-2024-21451: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-26176HIGHCVSS 7.8fixed in 10.0.25398.7632024-03-12
CVE-2024-26176 [HIGH] CWE-126 CVE-2024-26176: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21444HIGHCVSS 8.8fixed in 10.0.25398.8302024-03-12
CVE-2024-21444 [HIGH] CWE-190 CVE-2024-21444: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2024-21443HIGHCVSS 7.3fixed in 10.0.25398.7632024-03-12
CVE-2024-21443 [HIGH] CWE-416 CVE-2024-21443: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21445HIGHCVSS 7.0fixed in 10.0.25398.7632024-03-12
CVE-2024-21445 [HIGH] CWE-415 CVE-2024-21445: Windows USB Print Driver Elevation of Privilege Vulnerability Windows USB Print Driver Elevation of Privilege Vulnerability
nvd