About “Microsoft Windows”

A curated feed of “Microsoft Windows”-related CVEs appears below. We currently track 14515 CVEs for this tag (all time). In the last 365 days, 1681 were published. Average CVSS is 7.3 (all time; 7.2 over 365d), and 66% are rated High/Critical (all time). Top CWEs (last 365 days): CWE-416 - Use After Free, CWE-122 - Heap-based Buffer Overflow, CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition').

In our taxonomy this topic maps to a MODERATE impact class. Issues here typically affect operating system packages or kernels. Plan reboots or service restarts and coordinate rollouts across fleets. Use the filters below to sort by CVSS, risk and CWE. Each detail page highlights vendor advisories and mitigation tips.

CVEs tagged with this topic. Filters apply to the whole list (loaded from JSON).

CVSS ≥ 0.0
2024-08-13
High

CVE-2024-38121

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

High

CVE-2024-38120

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

High

CVE-2024-38116

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

High

CVE-2024-38115

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

High

CVE-2024-38114

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

High

CVE-2024-38107

Windows Power Dependency Coordinator Elevation of Privilege Vulnerability

High

CVE-2024-38106

Windows Kernel Elevation of Privilege Vulnerability

Critical

CVE-2024-38063

Windows TCP/IP Remote Code Execution Vulnerability

High

CVE-2024-37968

Windows DNS Spoofing Vulnerability

High

CVE-2024-29995

Windows Kerberos Elevation of Privilege Vulnerability

High

CVE-2023-31341

Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD μProf may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash, res…

2024-08-12
Medium

CVE-2024-6768

A Denial of Service in CLFS.sys in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated low-privilege user to cause a B…

Medium

CVE-2024-42474

Streamlit is a data oriented application development framework for python. Snowflake Streamlit open source addressed a security vulnerability via the static file sharing feature. Users of hosted Stre…

2024-08-08
High

CVE-2024-0107

NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability m…

High

CVE-2024-38202

Summary Microsoft was notified that an elevation of privilege vulnerability exists in Windows Update, potentially enabling an attacker with basic user privileges to reintroduce previously mitigated v…

Medium

CVE-2024-21302

Summary: As of July 8, 2025 Microsoft has completed mitigations to address this vulnerability. See KB5042562: Guidance for blocking rollback of virtualization-based security related updates and the R…

2024-08-07
Medium

CVE-2024-7061

Okta Verify for Windows is vulnerable to privilege escalation through DLL hijacking. The vulnerability is fixed in Okta Verify for Windows version 5.0.2. To remediate this vulnerability, upgrade to 5…

High

CVE-2024-7553

Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows. This may result in the application executing…

2024-08-06
High

CVE-2024-23464

In certain cases, Zscaler Internet Access (ZIA) can be disabled by PowerShell commands with admin rights. This affects Zscaler Client Connector on Windows <4.2.1

High

CVE-2024-23458

While copying individual autoupdater log files, reparse point check was missing which could result into crafted attacks, potentially leading to a local privilege escalation. This issue affects Zscale…

Medium

CVE-2023-28806

An Improper Validation of signature in Zscaler Client Connector on Windows allows an authenticated user to disable anti-tampering. This issue affects Client Connector on Windows <4.2.0.190.

Medium

CVE-2024-5963

Unquoted Executable Path vulnerability in Hitachi Device Manager on Windows (Device Manager Server component).This issue affects Hitachi Device Manager: before 8.8.7-00.

High

CVE-2024-5828

Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.This issue affects Hitachi Tuning Manager: before 8.8.7-00.

2024-08-02
Medium

CVE-2024-40723

The specific API in HWATAIServiSign Windows Version from CHANGING Information Technology does not properly validate the length of server-side inputs. When a user visits a spoofed website, unauthentic…

Medium

CVE-2024-40722

The specific API in TCBServiSign Windows Version from CHANGING Information Technology does does not properly validate the length of server-side input. When a user visits a spoofed website, unauthenti…

High

CVE-2024-40721

The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack…

High

CVE-2024-40720

The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack…

Medium

CVE-2024-40719

The encryption strength of the authorization keys in CHANGING Information Technology TCBServiSign Windows Version is insufficient. When a remote attacker tricks a victim into visiting a malicious web…

2024-08-01
High

CVE-2024-7358

A vulnerability was found in Point B Ltd Getscreen Agent 2.19.6 on Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file getscreen.msi of t…

2024-07-31
Medium

CVE-2024-41955

Mobile Security Framework (MobSF) is a security research platform for mobile applications in Android, iOS and Windows Mobile. An open redirect vulnerability exist in MobSF authentication view. Update…

Medium

CVE-2024-6978

Cato Networks Windows SDP Client Local root certificates can be installed by low-privileged users.This issue affects SDP Client: before 5.10.28.

Medium

CVE-2024-6977

A vulnerability in Cato Networks SDP Client on Windows allows the insertion of sensitive information into the log file, which can lead to an account takeover. However, the attack requires bypassing p…

High

CVE-2024-6975

Cato Networks Windows SDP Client Local Privilege Escalation via openssl configuration file. This issue affects SDP Client before 5.10.34.

High

CVE-2024-6974

Cato Networks Windows SDP Client Local Privilege Escalation via self-upgradeThis issue affects SDP Client: before 5.10.34.

High

CVE-2024-6973

Remote Code Execution in Cato Windows SDP client via crafted URLs. This issue affects Windows SDP Client before 5.10.34.

2024-07-29
Medium

CVE-2024-3219

The “socket” module provides a pure-Python fallback to the socket.socketpair() function for platforms that don’t support AF_UNIX, such as Windows. This pure-Python implementation uses AF_INET or…

High

CVE-2024-41726

Path traversal vulnerability exists in SKYSEA Client View Ver.3.013.00 to Ver.19.210.04e. If this vulnerability is exploited, an arbitrary executable file may be executed by a user who can log in to…

High

CVE-2024-41143

Origin validation error vulnerability exists in SKYSEA Client View Ver.3.013.00 to Ver.19.210.04e. If this vulnerability is exploited, an arbitrary process may be executed with SYSTEM privilege by a…

High

CVE-2024-41139

Incorrect privilege assignment vulnerability exists in SKYSEA Client View Ver.6.010.06 to Ver.19.210.04e. If a user who can log in to the PC where the product's Windows client is installed places a s…

2024-07-28
High

CVE-2024-42053

The MSI installer for Splashtop Streamer for Windows before 3.6.0.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM b…

High

CVE-2024-42052

The MSI installer for Splashtop Streamer for Windows before 3.5.8.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM b…

High

CVE-2024-42051

The MSI installer for Splashtop Streamer for Windows before 3.6.2.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM b…

High

CVE-2024-42050

The MSI installer for Splashtop Streamer for Windows before 3.7.0.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM v…

Critical

CVE-2024-42049

TightVNC (Server for Windows) before 2.8.84 allows attackers to connect to the control pipe via a network connection.

2024-07-23
High

CVE-2020-11639

An attacker could exploit the vulnerability by injecting garbage data or specially crafted data. Depending on the data injected each process might be affected differently. The process could crash or…

2024-07-22
High

CVE-2024-6913

Execution with unnecessary privileges in PerkinElmer ProcessPlus allows an attacker to spawn a remote shell on the windows system.This issue affects ProcessPlus: through 1.11.6507.0.

Critical

CVE-2024-6912

Use of hard-coded MSSQL credentials in PerkinElmer ProcessPlus on Windows allows an attacker to login remove on all prone installations.This issue affects ProcessPlus: through 1.11.6507.0.

High

CVE-2024-6911

Files on the Windows system are accessible without authentication to external parties due to a local file inclusion in PerkinElmer ProcessPlus.This issue affects ProcessPlus: through 1.11.6507.0.

High

CVE-2024-37391

ProtonVPN before 3.2.10 on Windows mishandles the drive installer path, which should use this: '"' + ExpandConstant('{autopf}\Proton\Drive') + '"' in Setup/setup.iss.

2024-07-18
Medium

CVE-2024-5321

A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTIN\Users may be able to read container logs and NT AUTHORITY\Authenticated Users may be able to modify container l…

Medium

CVE-2024-40644

gitoxide An idiomatic, lean, fast & safe pure Rust implementation of Git. `gix-path` can be tricked into running another `git.exe` placed in an untrusted location by a limited user account on Windows…

High

CVE-2024-40898

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to…

High

CVE-2024-29014

Vulnerability in SonicWall SMA100 NetExtender Windows (32 and 64-bit) client 10.2.339 and earlier versions allows an attacker to arbitrary code execution when processing an EPC Client update.

2024-07-16
High

CVE-2024-6492

Exposure of Sensitive Information in edge browser session proxy feature in Devolutions Remote Desktop Manager 2024.2.14.0 and earlier on Windows allows an attacker to intercept proxy credentials via…

Medium

CVE-2022-45449

Sensitive information disclosure due to excessive privileges assigned to Acronis Agent. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 30984.

2024-07-15
Medium

CVE-2024-39827

Improper input validation in the installer for Zoom Workplace Desktop App for Windows before version 6.0.10 may allow an authenticated user to conduct a denial of service via local access.

Medium

CVE-2024-39826

Race condition in Team Chat for some Zoom Workplace Apps and SDKs for Windows may allow an authenticated user to conduct information disclosure via network access.

Medium

CVE-2024-39821

Race condition in the installer for Zoom Workplace App for Windows and Zoom Rooms App for Windows may allow an authenticated user to conduct a denial of service via local access.

Medium

CVE-2024-39819

Integrity check in the installer for some Zoom Workplace Apps and SDKs for Windows may allow an authenticated user to conduct a privilege escalation via local access.

High

CVE-2024-27240

Improper input validation in the installer for some Zoom Apps for Windows may allow an authenticated user to conduct a privilege escalation via local access.

High

CVE-2024-27238

Race condition in the installer for some Zoom Apps and SDKs for Windows before version 6.0.0 may allow an authenticated user to conduct a privilege escalation via local access.

High

CVE-2024-6689

Local Privilege Escalation in MSI-Installer in baramundi Management Agent v23.1.172.0 on Windows allows a local unprivileged user to escalate privileges to SYSTEM.

Medium

CVE-2024-6746

A vulnerability classified as problematic was found in NaiboWang EasySpider 0.6.2 on Windows. Affected by this vulnerability is an unknown functionality of the file \EasySpider\resources\app\server.j…

2024-07-11
High

CVE-2024-39904

VNote is a note-taking platform. Prior to 3.18.1, a code execution vulnerability existed in VNote, which allowed an attacker to execute arbitrary programs on the victim's system. A crafted URI can be…

2024-07-10
High

CVE-2024-6286

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

High

CVE-2024-6151

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual Delivery Agent for Windows used by Citrix Virtual Apps and Desktops and Citrix DaaS

High

CVE-2024-28827

Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p8, < 2.2.0p29, < 2.1.0p45, and <= 2.0.0p39 (EOL) allows a local attacker to gain SYSTEM privileges.

High

CVE-2024-21417

Windows Text Services Framework Elevation of Privilege Vulnerability

2024-07-09
High

CVE-2024-6222

In Docker Desktop before v4.29.0, an attacker who has gained access to the Docker Desktop VM through a container breakout can further escape to the host by passing extensions and dashboard related IP…

High

CVE-2024-39698

electron-updater allows for automatic updates for Electron apps. The file `packages/electron-updater/src/windowsExecutableCodeSignatureVerifier.ts` implements the signature validation routine for Ele…

Medium

CVE-2024-5652

In Docker Desktop on Windows before v4.31.0 allows a user in the docker-users group to cause a Windows Denial-of-Service through the exec-path Docker daemon config option in Windows containers mode.

High

CVE-2024-38112

Windows MSHTML Platform Spoofing Vulnerability

Medium

CVE-2024-38105

Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability

High

CVE-2024-38104

Windows Fax Service Remote Code Execution Vulnerability

Medium

CVE-2024-38102

Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability

Medium

CVE-2024-38101

Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability

High

CVE-2024-38100

Windows File Explorer Elevation of Privilege Vulnerability

Medium

CVE-2024-38099

Windows Remote Desktop Licensing Service Denial of Service Vulnerability

High

CVE-2024-38085

Windows Graphics Component Elevation of Privilege Vulnerability

High

CVE-2024-38080

Windows Hyper-V Elevation of Privilege Vulnerability

High

CVE-2024-38079

Windows Graphics Component Elevation of Privilege Vulnerability

Critical

CVE-2024-38077

Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

Critical

CVE-2024-38076

Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

Critical

CVE-2024-38074

Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

High

CVE-2024-38073

Windows Remote Desktop Licensing Service Denial of Service Vulnerability

High

CVE-2024-38072

Windows Remote Desktop Licensing Service Denial of Service Vulnerability

High

CVE-2024-38071

Windows Remote Desktop Licensing Service Denial of Service Vulnerability

High

CVE-2024-38070

Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability

High

CVE-2024-38069

Windows Enroll Engine Security Feature Bypass Vulnerability

High

CVE-2024-38068

Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability

High

CVE-2024-38067

Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability

High

CVE-2024-38066

Windows Win32k Elevation of Privilege Vulnerability

High

CVE-2024-38064

Windows TCP/IP Information Disclosure Vulnerability

High

CVE-2024-38062

Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

High

CVE-2024-38060

Windows Imaging Component Remote Code Execution Vulnerability

Medium

CVE-2024-38056

Microsoft Windows Codecs Library Information Disclosure Vulnerability

Medium

CVE-2024-38055

Microsoft Windows Codecs Library Information Disclosure Vulnerability

High

CVE-2024-38053

Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability

High

CVE-2024-38051

Windows Graphics Component Remote Code Execution Vulnerability

High

CVE-2024-38050

Windows Workstation Service Elevation of Privilege Vulnerability

Medium

CVE-2024-38049

Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability

Medium

CVE-2024-38048

Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability

Medium

CVE-2024-38041

Windows Kernel Information Disclosure Vulnerability

High

CVE-2024-38034

Windows Filtering Platform Elevation of Privilege Vulnerability

High

CVE-2024-38031

Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability

Medium

CVE-2024-38030

Windows Themes Spoofing Vulnerability

High

CVE-2024-38028

Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability

Medium

CVE-2024-38027

Windows Line Printer Daemon Service Denial of Service Vulnerability

High

CVE-2024-38025

Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability

High

CVE-2024-38022

Windows Image Acquisition Elevation of Privilege Vulnerability

High

CVE-2024-38019

Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability

High

CVE-2024-38015

Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability

Medium

CVE-2024-38013

Microsoft Windows Server Backup Elevation of Privilege Vulnerability

Medium

CVE-2024-35270

Windows iSCSI Service Denial of Service Vulnerability

High

CVE-2024-30098

Windows Cryptographic Services Security Feature Bypass Vulnerability

High

CVE-2024-30081

Windows NTLM Spoofing Vulnerability

High

CVE-2024-30079

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

Medium

CVE-2024-30071

Windows Remote Access Connection Manager Information Disclosure Vulnerability

High

CVE-2024-30013

Windows MultiPoint Services Remote Code Execution Vulnerability

Medium

CVE-2024-39600

Under certain conditions, the memory of SAP GUI for Windows contains the password used to log on to an SAP system, which might allow an attacker to get hold of the password and impersonate the affect…