VendorsMicrosoftwindows_10all versions
Vulnerabilities

Microsoft Windows 10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4056CVEs
CVE-2021-41334
Windows Desktop Bridge Elevation of Privilege Vulnerability
Published 2021-10-13 · Modified
7.8EPSS 0.004
CVE-2018-16177
Untrusted search path vulnerability in The installer of Windows 10 Fall Creators Update Modify module for Security Measures tool allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
Published 2019-01-09 · Modified
7.8EPSS 0.004
CVE-2022-34696
Windows Hyper-V Remote Code Execution Vulnerability
Published 2022-08-09 · Modified
7.8EPSS 0.003
CVE-2018-3702
Improper permissions in the installer for the ITE Tech* Consumer Infrared Driver for Windows 10 versions before 5.4.3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2019-06-13 · Modified
7.8EPSS 0.003
CVE-2022-41045
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Published 2022-11-09 · Modified
7.8EPSS 0.003
CVE-2022-41100
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Published 2022-11-09 · Modified
7.8EPSS 0.003
CVE-2020-12892
An untrusted search path in AMD Radeon settings Installer may lead to a privilege escalation or unauthorized code execution.
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2020-12986
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may cause arbitrary code execution in the kernel, leading to escalation of privilege or denial of service.
Published 2021-06-11 · Modified
7.8EPSS 0.003
CVE-2022-41093
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Published 2022-11-09 · Modified
7.8EPSS 0.003
CVE-2016-8223
During an internal security review, Lenovo identified a local privilege escalation vulnerability in Lenovo System Interface Foundation software installed on some Windows 10 PCs where a user with local privileges could run arbitrary code with administrator level privileges.
Published 2016-11-29 · Modified
7.8EPSS 0.003
CVE-2020-8763
Improper permissions in the installer for the Intel(R) RealSense(TM) D400 Series UWP driver for Windows* 10 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2020-08-13 · Modified
7.8EPSS 0.003
CVE-2020-12981
An insufficient input validation in the AMD Graphics Driver for Windows 10 may allow unprivileged users to unload the driver, potentially causing memory corruptions in high privileged processes, which can lead to escalation of privileges or denial of service.
Published 2021-06-11 · Modified
7.8EPSS 0.003
CVE-2020-12929
Improper parameters validation in some trusted applications of the PSP contained in the AMD Graphics Driver may allow a local attacker to bypass security restrictions and achieve arbitrary code execution .
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2020-12893
Stack Buffer Overflow in AMD Graphics Driver for Windows 10 in Escape 0x15002a may lead to escalation of privilege or denial of service.
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2020-12898
Stack Buffer Overflow in AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2021-33063
Uncontrolled search path in the Intel(R) RealSense(TM) D400 Series UWP driver for Windows 10 before version 6.1.160.22 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2021-11-17 · Modified
7.8EPSS 0.003
CVE-2020-12903
Out of Bounds Write and Read in AMD Graphics Driver for Windows 10 in Escape 0x6002d03 may lead to escalation of privilege or denial of service.
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2020-12963
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows may allow unprivileged users to compromise the system.
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2020-12980
An out of bounds write and read vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
Published 2021-06-11 · Modified
7.8EPSS 0.003
CVE-2020-12982
An invalid object pointer free vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
Published 2021-06-11 · Modified
7.8EPSS 0.003
CVE-2020-12983
An out of bounds write vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privileges or denial of service.
Published 2021-06-11 · Modified
7.8EPSS 0.003
CVE-2020-12985
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
Published 2021-06-11 · Modified
7.8EPSS 0.003
CVE-2021-0121
Improper access control in the installer for some Intel(R) Iris(R) Xe MAX Dedicated Graphics Drivers for Windows 10 before version 27.20.100.9466 may allow authenticated user to potentially enable escalation of privilege via local access.
Published 2021-11-17 · Modified
7.8EPSS 0.003
CVE-2020-12895
Pool/Heap Overflow in AMD Graphics Driver for Windows 10 in Escape 0x110037 may lead to escalation of privilege, information disclosure or denial of service.
Published 2021-11-15 · Modified
7.8EPSS 0.003
CVE-2020-12900
An arbitrary write vulnerability in the AMD Radeon Graphics Driver for Windows 10 potentially allows unprivileged users to gain Escalation of Privileges and cause Denial of Service.
Published 2021-11-15 · Modified
7.8EPSS 0.002
CVE-2020-12902
Arbitrary Decrement Privilege Escalation in AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
Published 2021-11-15 · Modified
7.8EPSS 0.002
CVE-2022-42972
A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could cause local privilege escalation when a local attacker modifies the webroot directory. Affected Products: APC Easy UPS Online Monitoring Software (Windows 7, 10, 11 & Windows Server 2016, 2019, 2022 - Versions prior to V2.5-GA), APC Easy UPS Online Monitoring Software (Windows 11, Windows Server 2019, 2022 - Versions prior to V2.5-GA-01-22261), Schneider Electric Easy UPS Online Monitoring Software (Windows 7, 10, 11 & Windows Server 2016, 2019, 2022 - Versions prior to V2.5-GS), Schneider Electric Easy UPS Online Monitoring Software (Windows 11, Windows Server 2019, 2022 - Versions prior to V2.5-GS-01-22261)
Published 2023-02-01 · Modified
7.8EPSS 0.002
CVE-2022-42973
A CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause local privilege escalation when local attacker connects to the database. Affected Products: APC Easy UPS Online Monitoring Software (Windows 7, 10, 11 & Windows Server 2016, 2019, 2022 - Versions prior to V2.5-GA), APC Easy UPS Online Monitoring Software (Windows 11, Windows Server 2019, 2022 - Versions prior to V2.5-GA-01-22261), Schneider Electric Easy UPS Online Monitoring Software (Windows 7, 10, 11 & Windows Server 2016, 2019, 2022 - Versions prior to V2.5-GS), Schneider Electric Easy UPS Online Monitoring Software (Windows 11, Windows Server 2019, 2022 - Versions prior to V2.5-GS-01-22261)
Published 2023-02-01 · Modified
7.8EPSS 0.002
CVE-2023-27382
Incorrect default permissions in the Audio Service for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.0.0.156 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2023-05-10 · Modified
7.8EPSS 0.001
CVE-2021-30605
Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access rights on two objects allowing an attacker to potentially bypass discretionary access controls.
Published 2021-09-08 · Modified
7.8EPSS 0.001
CVE-2018-8218
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows 10, Windows 10 Servers.
Published 2018-06-14 · Modified
7.7EPSS 0.079
CVE-2020-16894
Windows NAT Denial of Service Vulnerability
Published 2020-10-16 · Modified
7.7EPSS 0.049
CVE-2020-16997
Remote Desktop Protocol Server Information Disclosure Vulnerability
Published 2020-11-11 · Modified
7.7EPSS 0.040
CVE-2021-1692
Windows Hyper-V Denial of Service Vulnerability
Published 2021-01-12 · Modified
7.7EPSS 0.039
CVE-2021-1691
Windows Hyper-V Denial of Service Vulnerability
Published 2021-01-12 · Modified
7.7EPSS 0.038
CVE-2022-37998
Windows Local Session Manager (LSM) Denial of Service Vulnerability
Published 2022-10-11 · Modified
7.7EPSS 0.030
CVE-2022-37973
Windows Local Session Manager (LSM) Denial of Service Vulnerability
Published 2022-10-11 · Modified
7.7EPSS 0.030
CVE-2021-33758
Windows Hyper-V Denial of Service Vulnerability
Published 2021-07-14 · Modified
7.7EPSS 0.028
CVE-2021-34500
Windows Kernel Memory Information Disclosure Vulnerability
Published 2021-07-14 · Modified
7.7EPSS 0.026
CVE-2021-40463
Windows Network Address Translation (NAT) Denial of Service Vulnerability
Published 2021-10-13 · Modified
7.7EPSS 0.026
← Prev55 / 102Next →