Filtered by vendor Microsoft Subscriptions
Filtered by product Windows 10 20h2 Subscriptions
Total 291 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-27085 1 Microsoft 7 Internet Explorer, Windows 10 1803, Windows 10 1809 and 4 more 2024-08-03 8.8 High
Internet Explorer Remote Code Execution Vulnerability
CVE-2021-26411 1 Microsoft 16 Edge, Internet Explorer, Windows 10 1507 and 13 more 2024-08-03 8.8 High
Internet Explorer Memory Corruption Vulnerability
CVE-2021-1732 1 Microsoft 11 Windows 10 1803, Windows 10 1809, Windows 10 1909 and 8 more 2024-08-03 7.8 High
Windows Win32k Elevation of Privilege Vulnerability
CVE-2021-1675 1 Microsoft 21 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 18 more 2024-08-03 7.8 High
Windows Print Spooler Remote Code Execution Vulnerability
CVE-2022-44698 1 Microsoft 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more 2024-08-03 5.4 Medium
Windows SmartScreen Security Feature Bypass Vulnerability
CVE-2022-44684 1 Microsoft 14 Windows 10 20h2, Windows 10 20h2, Windows 10 21h1 and 11 more 2024-08-03 6.5 Medium
Windows Local Session Manager (LSM) Denial of Service Vulnerability
CVE-2022-41687 2 Intel, Microsoft 15 Nuc P14e Laptop Element, Windows 10 1507, Windows 10 1511 and 12 more 2024-08-03 6.7 Medium
Insecure inherited permissions in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2022-41628 2 Intel, Microsoft 15 Nuc P14e Laptop Element, Windows 10 1507, Windows 10 1511 and 12 more 2024-08-03 6.7 Medium
Uncontrolled search path element in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2022-41128 1 Microsoft 25 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 22 more 2024-08-03 8.8 High
Windows Scripting Languages Remote Code Execution Vulnerability
CVE-2022-41125 1 Microsoft 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more 2024-08-03 7.8 High
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
CVE-2022-41073 1 Microsoft 26 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 23 more 2024-08-03 7.8 High
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2022-41033 1 Microsoft 24 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 21 more 2024-08-03 7.8 High
Windows COM+ Event System Service Elevation of Privilege Vulnerability
CVE-2022-41049 1 Microsoft 18 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 15 more 2024-08-03 5.4 Medium
Windows Mark of the Web Security Feature Bypass Vulnerability
CVE-2022-38396 1 Microsoft 10 Windows 10 1507, Windows 10 1511, Windows 10 1607 and 7 more 2024-08-03 7.8 High
HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions might allow escalation of privilege via execution of certain files outside the restricted path. This potential vulnerability was remediated starting with Windows 10 versions 21H2 on October 31, 2021.
CVE-2022-37969 1 Microsoft 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more 2024-08-03 7.8 High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2022-35743 1 Microsoft 23 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 20 more 2024-08-03 7.8 High
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
CVE-2022-34713 1 Microsoft 23 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 20 more 2024-08-03 7.8 High
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
CVE-2022-30190 1 Microsoft 23 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 20 more 2024-08-03 7.8 High
A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerability can run arbitrary code with the privileges of the calling application. The attacker can then install programs, view, change, or delete data, or create new accounts in the context allowed by the user’s rights. Please see the MSRC Blog Entry for important information about steps you can take to protect your system from this vulnerability.
CVE-2022-26934 1 Microsoft 28 365 Apps, Office, Office Long Term Servicing Channel and 25 more 2024-08-03 6.5 Medium
Windows Graphics Component Information Disclosure Vulnerability
CVE-2022-26925 1 Microsoft 25 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 22 more 2024-08-03 8.1 High
Windows LSA Spoofing Vulnerability