« Volver al listado

Microsoft

Microsoft Windows 10 2004: vulnerabilidades y CVE

Microsoft Windows 10 2004 tiene 28 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 27 figuran en el catálogo de explotación activa de CISA.

CVE28
Últimos 12 meses0
Críticas1
Explotadas activamente27

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

🔴 Explotadas activamente (CISA KEV)

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2021-43226Alta (7.8)3.1%⚠ Explotación activa15 dic 2021
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-41357Alta (7.8)1.6%⚠ Explotación activa13 oct 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-40450Alta (7.8)1.6%⚠ Explotación activa13 oct 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-31166Crítica (9.8)100%⚠ Explotación activa11 may 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
CVE-2021-34484Alta (7.8)22%⚠ Explotación activa12 ago 2021
Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2021-34486Alta (7.8)9.3%⚠ Explotación activa12 ago 2021
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-41379Alta (7.8)19%⚠ Explotación activa10 nov 2021
Windows Installer Elevation of Privilege Vulnerability
CVE-2021-36934Alta (7.8)67%⚠ Explotación activa22 jul 2021
An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) database. An attacker who successfully…
CVE-2021-40449Alta (7.8)74%⚠ Explotación activa13 oct 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-40444Alta (7.8)97%⚠ Explotación activa15 sept 2021
Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using…
CVE-2020-0986Alta (7.8)16%⚠ Explotación activa9 jun 2020
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1237,…
CVE-2020-1464Media (5.5)39%⚠ Explotación activa17 ago 2020
A spoofing vulnerability exists when Windows incorrectly validates file signatures. An attacker who successfully exploited this vulnerability could bypass security features and load improperly signed files. In an attack…
CVE-2020-17087Alta (7.8)5.4%⚠ Explotación activa11 nov 2020
Windows Kernel Local Elevation of Privilege Vulnerability
CVE-2021-1732Alta (7.8)78%⚠ Explotación activa25 feb 2021
Windows Win32k Elevation of Privilege Vulnerability
CVE-2021-28310Alta (7.8)8.3%⚠ Explotación activa13 abr 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-36955Alta (7.8)4.0%⚠ Explotación activa15 sept 2021
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-31199Alta (7.8)3.0%⚠ Explotación activa8 jun 2021
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-31956Alta (7.8)22%⚠ Explotación activa8 jun 2021
Windows NTFS Elevation of Privilege Vulnerability
CVE-2021-31201Alta (7.8)2.6%⚠ Explotación activa8 jun 2021
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-31955Media (5.5)81%⚠ Explotación activa8 jun 2021
Windows Kernel Information Disclosure Vulnerability

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2022-38396Alta (7.8)0.41%—12 feb 2023
HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions might allow escalation of privilege via execution of certain files outside the restricted path. This…
CVE-2021-43226Alta (7.8)3.1%⚠ Explotación activa15 dic 2021
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-41379Alta (7.8)19%⚠ Explotación activa10 nov 2021
Windows Installer Elevation of Privilege Vulnerability
CVE-2021-41357Alta (7.8)1.6%⚠ Explotación activa13 oct 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-40450Alta (7.8)1.6%⚠ Explotación activa13 oct 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-40449Alta (7.8)74%⚠ Explotación activa13 oct 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-40444Alta (7.8)97%⚠ Explotación activa15 sept 2021
Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using…
CVE-2021-36955Alta (7.8)4.0%⚠ Explotación activa15 sept 2021
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-36948Alta (7.8)23%⚠ Explotación activa12 ago 2021
Windows Update Medic Service Elevation of Privilege Vulnerability
CVE-2021-34486Alta (7.8)9.3%⚠ Explotación activa12 ago 2021
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-34484Alta (7.8)22%⚠ Explotación activa12 ago 2021
Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2021-36934Alta (7.8)67%⚠ Explotación activa22 jul 2021
An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) database. An attacker who successfully…
CVE-2021-34448Alta (8.8)40%⚠ Explotación activa16 jul 2021
Scripting Engine Memory Corruption Vulnerability
CVE-2021-33771Alta (7.8)10%⚠ Explotación activa14 jul 2021
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-31979Alta (7.8)4.5%⚠ Explotación activa14 jul 2021
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-33742Alta (8.8)59%⚠ Explotación activa8 jun 2021
Windows MSHTML Platform Remote Code Execution Vulnerability
CVE-2021-33739Alta (7.8)6.6%⚠ Explotación activa8 jun 2021
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVE-2021-31956Alta (7.8)22%⚠ Explotación activa8 jun 2021
Windows NTFS Elevation of Privilege Vulnerability
CVE-2021-31955Media (5.5)81%⚠ Explotación activa8 jun 2021
Windows Kernel Information Disclosure Vulnerability
CVE-2021-31201Alta (7.8)2.6%⚠ Explotación activa8 jun 2021
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-31199Alta (7.8)3.0%⚠ Explotación activa8 jun 2021
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-1675Alta (7.8)85%⚠ Explotación activa8 jun 2021
Windows Print Spooler Remote Code Execution Vulnerability
CVE-2021-31166Crítica (9.8)100%⚠ Explotación activa11 may 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
CVE-2021-28310Alta (7.8)8.3%⚠ Explotación activa13 abr 2021
Win32k Elevation of Privilege Vulnerability
CVE-2021-1732Alta (7.8)78%⚠ Explotación activa25 feb 2021
Windows Win32k Elevation of Privilege Vulnerability
CVE-2020-17087Alta (7.8)5.4%⚠ Explotación activa11 nov 2020
Windows Kernel Local Elevation of Privilege Vulnerability
CVE-2020-1464Media (5.5)39%⚠ Explotación activa17 ago 2020
A spoofing vulnerability exists when Windows incorrectly validates file signatures. An attacker who successfully exploited this vulnerability could bypass security features and load improperly signed files. In an attack…
CVE-2020-0986Alta (7.8)16%⚠ Explotación activa9 jun 2020
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1237,…

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1068 Exploitation for Privilege Escalation23
  2. T1059 Command and Scripting Interpreter13
  3. T1059.001 PowerShell7
  4. T1203 Exploitation for Client Execution3
  5. T1548 Abuse Elevation Control Mechanism2
  6. T1005 Data from Local System1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

🏴 Grupos que explotan esta tecnología

Otros productos de Microsoft