Microsoft

Windows 10 21h2

1487 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 08.07.2025 16:57:03
  • Last modified 14.07.2025 17:21:11

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges over a network.

  • EPSS 0.08%
  • Published 08.07.2025 16:57:02
  • Last modified 14.07.2025 17:29:00

Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.

  • EPSS 0.09%
  • Published 08.07.2025 16:57:00
  • Last modified 14.07.2025 17:30:26

Protection mechanism failure in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.

  • EPSS 0.21%
  • Published 10.06.2025 17:02:35
  • Last modified 08.07.2025 15:04:13

Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate privileges over a network.

Media report
  • EPSS 4.28%
  • Published 10.06.2025 17:02:35
  • Last modified 15.09.2025 19:15:35

Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network.

  • EPSS 0.14%
  • Published 10.06.2025 17:02:33
  • Last modified 10.07.2025 16:03:28

Improper access control in Microsoft Local Security Authority Server (lsasrv) allows an unauthorized attacker to deny service over a network.

  • EPSS 0.22%
  • Published 10.06.2025 17:02:33
  • Last modified 10.07.2025 16:03:16

Null pointer dereference in Windows Local Security Authority (LSA) allows an authorized attacker to deny service over a network.

  • EPSS 0.06%
  • Published 10.06.2025 17:02:32
  • Last modified 08.07.2025 16:21:47

Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.

  • EPSS 0.14%
  • Published 10.06.2025 17:02:31
  • Last modified 10.07.2025 16:16:15

Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally.

Warning Media report Exploit
  • EPSS 24.57%
  • Published 10.06.2025 17:02:31
  • Last modified 16.09.2025 14:21:01

External control of file name or path in Internet Shortcut Files allows an unauthorized attacker to execute code over a network.