Product of Microsoft
Windows, page 2
As of , 174 Microsoft Windows vulnerabilities are on CISA's list of exploited vulnerabilities, 49 of them used in ransomware campaigns; 13 were added in 2026. Patch first: CVE-2025-60710.
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 26 | CVE-2021-36934SAM Local Privilege Escalation | Microsoft Windows | Patch this weekMetasploit module; EPSS 0.67 | 0.67 | ||
| 27 | CVE-2021-40449Win32k Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.74 | 0.74 | ||
| 28 | CVE-2014-1812Group Policy Preferences Password Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.65 | 0.65 | ||
| 29 | CVE-2021-1675Print Spooler Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.85 | 0.85 | ||
| 30 | CVE-2021-34527Print Spooler Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 31 | CVE-2021-36942Local Security Authority (LSA) Spoofing | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.66 | 0.66 | ||
| 32 | CVE-2023-36874Error Reporting Service Privilege Escalation | Microsoft Windows | Patch this weekMetasploit module | 0.43 | ||
| 33 | CVE-2023-28252Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.49 | ||
| 34 | CVE-2022-21999Print Spooler Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.41 | ||
| 35 | CVE-2020-0787Background Intelligent Transfer Service (BITS) Improper Privilege Management | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.43 | ||
| 36 | CVE-2024-35250Kernel-Mode Driver Untrusted Pointer Dereference | Microsoft Windows | Patch this weekMetasploit module | 0.25 | ||
| 37 | CVE-2018-8440Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.18 | ||
| 38 | CVE-2022-26904User Profile Service Privilege Escalation | Microsoft Windows | Patch this weekMetasploit module | 0.17 | ||
| 39 | CVE-2017-0213Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; EPSS 0.84; verified Exploit-DB entry | 0.84 | ||
| 40 | CVE-2016-0185Media Center Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.70; verified Exploit-DB entry | 0.70 | ||
| 41 | CVE-2019-0543Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; verified Exploit-DB entry | 0.05 | ||
| 42 | CVE-2025-33073SMB Client Improper Access Control | Microsoft Windows | Patch this weekEPSS 0.83 | 0.83 | ||
| 43 | CVE-2025-24054NTLM Hash Disclosure Spoofing | Microsoft Windows | Patch this weekEPSS 0.59 | 0.59 | ||
| 44 | CVE-2024-43451NTLMv2 Hash Disclosure Spoofing | Microsoft Windows | Patch this weekEPSS 0.84 | 0.84 | ||
| 45 | CVE-2024-30088Kernel TOCTOU Race Condition | Microsoft Windows | Patch this weekRansomware use; EPSS 0.68 | 0.68 | ||
| 46 | CVE-2024-43572Management Console Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.67 | 0.67 | ||
| 47 | CVE-2024-38112MSHTML Platform Spoofing | Microsoft Windows | Patch this weekEPSS 0.84 | 0.84 | ||
| 48 | CVE-2024-21338Kernel Exposed IOCTL with Insufficient Access Control | Microsoft Windows | Patch this weekRansomware use; EPSS 0.60 | 0.60 | ||
| 49 | CVE-2024-21412Internet Shortcut Files Security Feature Bypass | Microsoft Windows | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| 50 | CVE-2023-36025SmartScreen Security Feature Bypass | Microsoft Windows | Patch this weekEPSS 0.88 | 0.88 | ||
| 51 | CVE-2023-36884Search Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| 52 | CVE-2023-24880SmartScreen Security Feature Bypass | Microsoft Windows | Patch this weekRansomware use; EPSS 0.78 | 0.78 | ||
| 53 | CVE-2022-34713Support Diagnostic Tool (MSDT) Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.68 | 0.68 | ||
| 54 | CVE-2012-0151Authenticode Signature Verification Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.88 | 0.88 | ||
| 55 | CVE-2014-4148Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.60 | 0.60 | ||
| 56 | CVE-2016-3393Graphics Device Interface (GDI) Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.68 | 0.68 | ||
| 57 | CVE-2016-7256Open Type Font Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.65 | 0.65 | ||
| 58 | CVE-2017-8543Search Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.74 | 0.74 | ||
| 59 | CVE-2018-8414Shell Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.73 | 0.73 | ||
| 60 | CVE-2017-0101Transaction Manager Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; EPSS 0.57 | 0.57 | ||
| 61 | CVE-2018-8174VBScript Engine Out-of-Bounds Write | Microsoft Windows | Patch this weekRansomware use; EPSS 0.88 | 0.88 | ||
| 62 | CVE-2020-0601CryptoAPI Spoofing | Microsoft Windows | Patch this weekEPSS 0.89 | 0.89 | ||
| 63 | CVE-2020-0938Adobe Font Manager Library Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.69 | 0.69 | ||
| 64 | CVE-2020-1020Adobe Font Manager Library Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.65 | 0.65 | ||
| 65 | CVE-2020-1350DNS Server Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.97 | 0.97 | ||
| 66 | CVE-2021-31955Kernel Information Disclosure | Microsoft Windows | Patch this weekEPSS 0.81 | 0.81 | ||
| 67 | CVE-2021-33742MSHTML Platform Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.59 | 0.59 | ||
| 68 | CVE-2025-26633Management Console (MMC) Improper Neutralization | Microsoft Windows | Patch this weekRansomware use | 0.30 | ||
| 69 | CVE-2024-43461MSHTML Platform Spoofing | Microsoft Windows | Patch this weekEPSS 0.54 | 0.54 | ||
| 70 | CVE-2022-37969Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.28 | ||
| 71 | CVE-2022-21971Runtime Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.54 | 0.54 | ||
| 72 | CVE-2018-8639Win32k Improper Resource Shutdown or Release | Microsoft Windows | Patch this weekRansomware use | 0.22 | ||
| 73 | CVE-2016-3309Kernel Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.20 | ||
| 74 | CVE-2021-41379Installer Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.19 | ||
| 75 | CVE-2019-1215Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.19 | ||
| 76 | CVE-2025-29824Common Log File System (CLFS) Driver Use-After-Free | Microsoft Windows | Patch this weekRansomware use | 0.14 | ||
| 77 | CVE-2024-49039Task Scheduler Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.14 | ||
| 78 | CVE-2023-23376Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.11 | ||
| 79 | CVE-2019-1253AppX Deployment Server Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.12 | ||
| 80 | CVE-2021-43890AppX Installer Spoofing | Microsoft Windows | Patch this weekRansomware use | 0.10 | ||
| 81 | CVE-2019-1388Certificate Dialog Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.09 | ||
| 82 | CVE-2022-24521CLFS Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.07 | ||
| 83 | CVE-2019-1064AppX Deployment Service (AppXSVC) Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.07 | ||
| 84 | CVE-2024-26169Error Reporting Service Improper Privilege Management | Microsoft Windows | Patch this weekRansomware use | 0.04 | ||
| 85 | CVE-2021-36955Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.04 | ||
| 86 | CVE-2019-1385AppX Deployment Extensions Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.04 | ||
| 87 | CVE-2019-1315Error Reporting Manager Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.03 | ||
| 88 | CVE-2021-43226Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.03 | ||
| 89 | CVE-2022-41073Print Spooler Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.02 | ||
| 90 | CVE-2022-41091Mark of the Web (MOTW) Security Feature Bypass | Microsoft Windows | Patch this weekRansomware use | 0.02 | ||
| 91 | CVE-2019-1129AppX Deployment Service (AppXSVC) Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.02 | ||
| 92 | CVE-2019-1130AppX Deployment Service Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.02 | ||
| 93 | CVE-2010-4398Kernel Stack-Based Buffer Overflow | Microsoft Windows | Patch soonVerified Exploit-DB entry | 0.09 | ||
| 94 | CVE-2004-0210Privilege Escalation | Microsoft Windows | Patch soonVerified Exploit-DB entry | 0.07 | ||
| 95 | CVE-2002-0367Privilege Escalation | Microsoft Windows | Patch soonVerified Exploit-DB entry | 0.05 | ||
| 96 | CVE-2024-43573MSHTML Platform Spoofing | Microsoft Windows | Patch soon | 0.46 | ||
| 97 | CVE-2024-38178Scripting Engine Memory Corruption | Microsoft Windows | Patch soon | 0.41 | ||
| 98 | CVE-2024-38193Ancillary Function Driver for WinSock Privilege Escalation | Microsoft Windows | Patch soon | 0.29 | ||
| 99 | CVE-2024-21351SmartScreen Security Feature Bypass | Microsoft Windows | Patch soon | 0.28 | ||
| 100 | CVE-2023-21674Advanced Local Procedure Call (ALPC) Privilege Escalation | Microsoft Windows | Patch soon | 0.41 | ||
| 101 | CVE-2015-1671Remote Code Execution | Microsoft Windows | Patch soon | 0.49 | ||
| 102 | CVE-2020-1464Spoofing | Microsoft Windows | Patch soon | 0.39 | ||
| 103 | CVE-2021-34448Scripting Engine Memory Corruption | Microsoft Windows | Patch soon | 0.40 | ||
| 104 | CVE-2026-21510Shell Protection Mechanism Failure | Microsoft Windows | Patch soon | 0.24 | ||
| 105 | CVE-2025-30397Scripting Engine Type Confusion | Microsoft Windows | Patch soon | 0.27 | ||
| 106 | CVE-2024-49138Common Log File System (CLFS) Driver Heap-Based Buffer Overflow | Microsoft Windows | Patch soon | 0.26 | ||
| 107 | CVE-2022-41128Scripting Languages Remote Code Execution | Microsoft Windows | Patch soon | 0.25 | ||
| 108 | CVE-2022-22047Client Server Runtime Subsystem (CSRSS) Privilege Escalation | Microsoft Windows | Patch soon | 0.19 | ||
| 109 | CVE-2022-22718Print Spooler Privilege Escalation | Microsoft Windows | Patch soon | 0.18 | ||
| 110 | CVE-2021-34484User Profile Service Privilege Escalation | Microsoft Windows | Patch soon | 0.22 | ||
| 111 | CVE-2021-31956NTFS Privilege Escalation | Microsoft Windows | Patch soon | 0.22 | ||
| 112 | CVE-2021-36948Update Medic Service Privilege Escalation | Microsoft Windows | Patch soon | 0.23 | ||
| 113 | CVE-2023-36424Out-of-Bounds Read | Microsoft Windows | Patch soon | 0.12 | ||
| 114 | CVE-2026-21513MSHTML Framework Protection Mechanism Failure | Microsoft Windows | Patch soon | 0.16 | ||
| 115 | CVE-2024-38213SmartScreen Security Feature Bypass | Microsoft Windows | Patch soon | 0.14 | ||
| 116 | CVE-2022-38028Print Spooler Privilege Escalation | Microsoft Windows | Patch soon | 0.15 | ||
| 117 | CVE-2023-36036Cloud Files Mini Filter Driver Privilege Escalation | Microsoft Windows | Patch soon | 0.17 | ||
| 118 | CVE-2020-0986Kernel Privilege Escalation | Microsoft Windows | Patch soon | 0.16 | ||
| 119 | CVE-2025-21333Hyper-V NT Kernel Integration VSP Heap-based Buffer Overflow | Microsoft Windows | Patch soon | 0.10 | ||
| 120 | CVE-2024-38217Mark of the Web (MOTW) Protection Mechanism Failure | Microsoft Windows | Patch soon | 0.10 | ||
| 121 | CVE-2023-36033Desktop Window Manager (DWM) Core Library Privilege Escalation | Microsoft Windows | Patch soon | 0.11 | ||
| 122 | CVE-2023-32046MSHTML Platform Privilege Escalation | Microsoft Windows | Patch soon | 0.10 | ||
| 123 | CVE-2022-26925LSA Spoofing | Microsoft Windows | Patch soon | 0.10 | ||
| 124 | CVE-2017-0005Graphics Device Interface (GDI) Privilege Escalation | Microsoft Windows | Patch soon | 0.11 | ||
| 125 | CVE-2019-0703SMB Information Disclosure | Microsoft Windows | Patch soon | 0.10 |