microsoft / windows_11_23h2
761 known vulnerabilities in microsoft windows_11_23h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-44815 | Medium | 1.1% | 9.8 | Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attack… | |
| CVE-2026-69525 | Medium | 1.0% | 9.8 | Use after free in Windows Remote Desktop Services allows an unauthorized attacke… | |
| CVE-2026-69829 | Medium | 1.0% | 9.8 | Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to e… | |
| CVE-2026-47302 | Medium | 1.0% | 7.5 | Allocation of resources without limits or throttling in .NET allows an unauthori… | |
| CVE-2026-48573 | Medium | 1.0% | 7.9 | No cwe for this issue in Windows Secure Boot allows an authorized attacker to by… | |
| CVE-2026-48576 | Medium | 1.0% | 7.9 | No cwe for this issue in Windows Secure Boot allows an authorized attacker to by… | |
| CVE-2026-20849 | Medium | 1.0% | 7.5 | Reliance on untrusted inputs in a security decision in Windows Kerberos allows a… | |
| CVE-2026-69496 | Medium | 1.0% | 9.8 | Heap-based buffer overflow in Windows Compressed Folder allows an unauthorized a… | |
| CVE-2026-49172 | Medium | 1.0% | 9.8 | Heap-based buffer overflow in Windows FTP Service allows an unauthorized attacke… | |
| CVE-2026-69910 | Medium | 1.0% | 9.8 | Stack-based buffer overflow in Windows Hyper-V allows an unauthorized attacker t… | |
| CVE-2026-50646 | Medium | 1.0% | 7.8 | Protection mechanism failure in .NET Framework allows an unauthorized attacker t… | |
| CVE-2026-47289 | Medium | 1.0% | 8.8 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-70296 | Medium | 1.0% | 9.8 | Out-of-bounds write in Windows Imaging Component allows an unauthorized attacker… | |
| CVE-2026-77493 | Medium | 1.0% | 9.8 | Double free in Microsoft Graphics Component allows an unauthorized attacker to e… | |
| CVE-2024-38249 | Medium | 1.0% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2026-50649 | Medium | 0.9% | 7.8 | Deserialization of untrusted data in .NET allows an unauthorized attacker to exe… | |
| CVE-2026-62784 | Medium | 0.9% | 8.8 | Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv)… | |
| CVE-2026-62800 | Medium | 0.9% | 8.8 | Heap-based buffer overflow in Windows SMB Server allows an authorized attacker t… | |
| CVE-2026-69463 | Medium | 0.9% | 9.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2024-30073 | Medium | 0.9% | 7.8 | Windows Security Zone Mapping Security Feature Bypass Vulnerability | |
| CVE-2026-69491 | Medium | 0.9% | 9.8 | Heap-based buffer overflow in Windows Microsoft DirectMusic allows an unauthoriz… | |
| CVE-2026-73009 | Medium | 0.9% | 9.8 | Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unau… | |
| CVE-2024-38245 | Medium | 0.9% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2026-42908 | Medium | 0.9% | 7.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-45639 | Medium | 0.9% | 7.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-83989 | Medium | 0.9% | 7.5 | Out-of-bounds read in Windows Services for NFS ONCRPC XDR Driver allows an unaut… | |
| CVE-2026-20931 | Medium | 0.9% | 8.0 | External control of file name or path in Windows Telephony Service allows an aut… | |
| CVE-2024-21406 | Medium | 0.9% | 7.5 | Windows Printing Service Spoofing Vulnerability | |
| CVE-2026-70563 | Medium | 0.8% | 8.1 | Improper link resolution before file access ('link following') in Windows Shell … | |
| CVE-2026-70342 | Medium | 0.8% | 8.1 | Use after free in Windows Ancillary Function Driver for WinSock allows an unauth… | |
| CVE-2026-50527 | Medium | 0.8% | 7.5 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to… | |
| CVE-2026-50648 | Medium | 0.8% | 7.5 | Allocation of resources without limits or throttling in .NET Framework allows an… | |
| CVE-2026-33827 | Medium | 0.8% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62785 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protoc… | |
| CVE-2026-49179 | Medium | 0.8% | 8.8 | Improper neutralization of special elements used in a command ('command injectio… | |
| CVE-2026-69669 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to … | |
| CVE-2026-68887 | Medium | 0.8% | 7.5 | Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthoriz… | |
| CVE-2026-20919 | Medium | 0.8% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20926 | Medium | 0.8% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-69518 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized atta… | |
| CVE-2026-70203 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows Media Player allows an unauthorized attack… | |
| CVE-2026-69860 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-70586 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to e… | |
| CVE-2026-73006 | Medium | 0.8% | 8.8 | Stack-based buffer overflow in Microsoft Graphics Component allows an unauthoriz… | |
| CVE-2024-21363 | Medium | 0.8% | 7.8 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | |
| CVE-2026-68839 | Medium | 0.8% | 9.8 | Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an un… | |
| CVE-2026-70587 | Medium | 0.8% | 7.5 | Improper null termination in Windows Remote Desktop Protocol allows an unauthori… | |
| CVE-2026-71330 | Medium | 0.8% | 7.5 | Exposure of sensitive system information to an unauthorized control sphere in Wi… | |
| CVE-2026-69503 | Medium | 0.8% | 8.0 | Stack-based buffer overflow in Windows USB Driver allows an authorized attacker … | |
| CVE-2026-69505 | Medium | 0.8% | 8.0 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… |