microsoft / windows_11_24h2
1,111 known vulnerabilities in microsoft windows_11_24h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-50439 | Medium | 0.8% | 8.1 | Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized… | |
| CVE-2026-50487 | Medium | 0.8% | 8.1 | Use after free in Microsoft Windows DNS allows an unauthorized attacker to eleva… | |
| CVE-2026-50694 | Medium | 0.8% | 8.1 | Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unau… | |
| CVE-2026-57087 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut… | |
| CVE-2026-50360 | Medium | 0.8% | 8.8 | Incorrect implementation of authentication algorithm in Windows SMB Server allow… | |
| CVE-2026-68839 | Medium | 0.8% | 9.8 | Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an un… | |
| CVE-2026-70587 | Medium | 0.8% | 7.5 | Improper null termination in Windows Remote Desktop Protocol allows an unauthori… | |
| CVE-2026-71330 | Medium | 0.8% | 7.5 | Exposure of sensitive system information to an unauthorized control sphere in Wi… | |
| CVE-2026-69503 | Medium | 0.8% | 8.0 | Stack-based buffer overflow in Windows USB Driver allows an authorized attacker … | |
| CVE-2026-69505 | Medium | 0.8% | 8.0 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69875 | Medium | 0.8% | 8.0 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev… | |
| CVE-2024-38243 | Medium | 0.8% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2024-38238 | Medium | 0.8% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2024-38119 | Medium | 0.8% | 7.5 | Windows Network Address Translation (NAT) Remote Code Execution Vulnerability | |
| CVE-2026-20848 | Medium | 0.8% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20934 | Medium | 0.8% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-69461 | Medium | 0.8% | 8.8 | Stack-based buffer overflow in Windows NTFS allows an unauthorized attacker to e… | |
| CVE-2026-50340 | Medium | 0.7% | 8.5 | Use after free in Windows Runtime allows an authorized attacker to elevate privi… | |
| CVE-2026-50500 | Medium | 0.7% | 7.5 | Use after free in Windows Netlogon allows an authorized attacker to elevate priv… | |
| CVE-2026-50505 | Medium | 0.7% | 7.5 | Use after free in Windows Message Queuing allows an authorized attacker to execu… | |
| CVE-2026-80096 | Medium | 0.7% | 8.8 | Out-of-bounds read in Windows Remote Desktop Services allows an authorized attac… | |
| CVE-2026-62792 | Medium | 0.7% | 8.1 | Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to… | |
| CVE-2026-50686 | Medium | 0.7% | 8.1 | Access of resource using incompatible type ('type confusion') in Windows OLE all… | |
| CVE-2026-69332 | Medium | 0.7% | 8.0 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69423 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows USB Video Driver allows an authorized atta… | |
| CVE-2026-69727 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69773 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69826 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-50369 | Medium | 0.7% | 8.8 | Use after free in Windows Remote Desktop Services allows an authorized attacker … | |
| CVE-2024-38046 | Medium | 0.7% | 7.8 | PowerShell Elevation of Privilege Vulnerability | |
| CVE-2024-38247 | Medium | 0.7% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2026-20837 | Medium | 0.7% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-62817 | Medium | 0.7% | 8.8 | Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute co… | |
| CVE-2026-57089 | Medium | 0.7% | 7.5 | Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allow… | |
| CVE-2026-62790 | Medium | 0.7% | 8.8 | Heap-based buffer overflow in Windows SMB Server allows an authorized attacker t… | |
| CVE-2026-69514 | Medium | 0.7% | 7.5 | Heap-based buffer overflow in Windows Remote Desktop Services allows an authoriz… | |
| CVE-2026-69599 | Medium | 0.7% | 7.5 | Use after free in Windows Remote Desktop Services allows an authorized attacker … | |
| CVE-2026-50502 | Medium | 0.7% | 8.0 | Insufficient granularity of access control in Windows Event Logging Service allo… | |
| CVE-2026-42974 | Medium | 0.6% | 8.1 | Integer overflow or wraparound in Windows Performance Monitor allows an unauthor… | |
| CVE-2026-42981 | Medium | 0.6% | 8.1 | Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an … | |
| CVE-2026-69852 | Medium | 0.6% | 7.5 | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows… | |
| CVE-2026-62822 | Medium | 0.6% | 8.8 | Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker t… | |
| CVE-2026-84001 | Medium | 0.6% | 7.5 | Out-of-bounds read in Windows Key Distribution Center allows an unauthorized att… | |
| CVE-2026-61363 | Medium | 0.6% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-59134 | Medium | 0.6% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-73012 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Management Services allows an authorized a… | |
| CVE-2026-56188 | Medium | 0.6% | 9.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62795 | Medium | 0.6% | 8.8 | Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an… | |
| CVE-2024-38252 | Medium | 0.6% | 7.8 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability | |
| CVE-2024-38253 | Medium | 0.6% | 7.8 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |