Windows 10 21h1
Vendor:
First CVE: Dec 11, 2013 · Active for 12 years
83
Total CVEs
More Total CVEs than 99% of tracked products
16.6
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 63% of tracked products
53.0%
KEV Rate
Higher KEV Rate than 99% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Windows 10 21h1 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 11, 2013
12 years ago
Most Recent CVE
Sep 10, 2024
686 days ago
CVE Severity & Scoring
Windows 10 21h183 CVEs
18%
80%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local53 (63.9%)
Network29 (34.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (1.2%)
Attack Complexity
Low73 (88.0%)
High10 (12.0%)
Unknown0 (0.0%)
User Interaction
None61 (73.5%)
Unknown0 (0.0%)
Required22 (26.5%)
Privileges Required
Low45 (54.2%)
High1 (1.2%)
None37 (44.6%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (83 CVEs).
83 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-30190HIGH A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerab | Jun 1, 2022 | 7.8 | 97 | YES | YES |
CVE-2021-40444HIGH <p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to expl | Sep 15, 2021 | 8.8 | 97 | YES | YES |
CVE-2022-26923HIGH Active Directory Domain Services Elevation of Privilege Vulnerability | May 10, 2022 | 8.8 | 96 | YES | YES |
CVE-2021-1675HIGH Windows Print Spooler Remote Code Execution Vulnerability | Jun 8, 2021 | 7.8 | 96 | YES | YES |
CVE-2021-40449HIGH Win32k Elevation of Privilege Vulnerability | Oct 13, 2021 | 7.8 | 94 | YES | YES |
CVE-2021-36934HIGH <p>An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) d | Jul 22, 2021 | 7.8 | 94 | YES | YES |
CVE-2022-21882HIGH Win32k Elevation of Privilege Vulnerability | Jan 11, 2022 | 7.8 | 91 | YES | YES |
CVE-2022-34713HIGH Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | Aug 9, 2022 | 7.8 | 90 | YES | NO |
CVE-2021-31955MEDIUM Windows Kernel Information Disclosure Vulnerability | Jun 8, 2021 | 5.5 | 90 | YES | NO |
CVE-2022-44698MEDIUM Windows SmartScreen Security Feature Bypass Vulnerability | Dec 13, 2022 | 5.4 | 89 | YES | NO |
Exploit Exposure
Signals from CVEs in this product scope (83 CVEs).
CISA KEV
44 CVEs
53.0% of CVEs· 99th percentile
Metasploit
9 CVEs
10.8% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (83 CVEs).
Media Mentions
Signals from CVEs in this product scope (83 CVEs).
Top CNAs Publishing CVEs For Windows 10 21h1
Top CWEs
Versions
No cataloged versions.