Vulnerabilities > Microsoft > Windows 10 20H2

DATE CVE VULNERABILITY TITLE RISK
2021-09-15 CVE-2021-36955 Unspecified vulnerability in Microsoft products
Windows Common Log File System Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2021-09-15 CVE-2021-40444 Path Traversal vulnerability in Microsoft products
<p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows.
network
low complexity
microsoft CWE-22
8.8
2021-08-12 CVE-2021-34484 Unspecified vulnerability in Microsoft products
Windows User Profile Service Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2021-08-12 CVE-2021-34486 Use After Free vulnerability in Microsoft products
Windows Event Tracing Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-416
7.8
2021-08-12 CVE-2021-36948 Unspecified vulnerability in Microsoft products
Windows Update Medic Service Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2021-07-22 CVE-2021-36934 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) database.
local
low complexity
microsoft
7.8
2021-07-16 CVE-2021-34448 Out-of-bounds Write vulnerability in Microsoft products
Scripting Engine Memory Corruption Vulnerability
network
high complexity
microsoft CWE-787
6.8
2021-07-14 CVE-2021-31979 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-119
7.8
2021-07-14 CVE-2021-33771 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-119
7.8
2021-07-02 CVE-2021-34527 Improper Privilege Management vulnerability in Microsoft products
<p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations.
network
low complexity
microsoft CWE-269
8.8