Windows Network File System
by Microsoft
CVEs (19)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-24941 | Cri | 0.71 | 9.8 | 0.95 | May 9, 2023 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-34715 | Cri | 0.70 | 9.8 | 0.80 | Aug 9, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-30136 | Cri | 0.70 | 9.8 | 0.75 | Jun 15, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-26937 | Cri | 0.70 | 9.8 | 0.77 | May 10, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-24497 | Cri | 0.66 | 9.8 | 0.35 | Apr 15, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-24491 | Cri | 0.66 | 9.8 | 0.33 | Apr 15, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2020-17051 | Cri | 0.64 | 9.8 | 0.11 | Nov 11, 2020 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-22029 | Hig | 0.53 | 8.1 | 0.05 | Jul 12, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2021-28445 | Hig | 0.53 | 8.1 | 0.03 | Apr 13, 2021 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2020-17047 | Hig | 0.51 | 7.5 | 0.27 | Nov 11, 2020 | Windows Network File System Denial of Service Vulnerability | ||
| CVE-2019-1045 | Hig | 0.51 | 7.8 | 0.01 | Jun 12, 2019 | An elevation of privilege vulnerability exists in the way that the Windows Network File System (NFS) handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally… | ||
| CVE-2023-28247 | Hig | 0.49 | 7.5 | 0.02 | Apr 11, 2023 | Windows Network File System Information Disclosure Vulnerability | ||
| CVE-2022-22039 | Hig | 0.49 | 7.5 | 0.02 | Jul 12, 2022 | Windows Network File System Remote Code Execution Vulnerability | ||
| CVE-2022-22028 | Med | 0.39 | 5.9 | 0.02 | Jul 12, 2022 | Windows Network File System Information Disclosure Vulnerability | ||
| CVE-2026-68819 | Med | 0.38 | 5.9 | 0.01 | Aug 11, 2026 | Buffer over-read in Windows Network File System allows an unauthorized attacker to deny service over a network. | ||
| CVE-2020-17056 | Med | 0.36 | 5.5 | 0.01 | Nov 11, 2020 | Windows Network File System Information Disclosure Vulnerability | ||
| CVE-2026-56650 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-56649 | Med | 0.00 | 5.9 | 0.01 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-56648 | Hig | 0.00 | 7.5 | 0.00 | Jul 14, 2026 | Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevate privileges over a network. |
- risk 0.71cvss 9.8epss 0.95
Windows Network File System Remote Code Execution Vulnerability
- risk 0.70cvss 9.8epss 0.80
Windows Network File System Remote Code Execution Vulnerability
- risk 0.70cvss 9.8epss 0.75
Windows Network File System Remote Code Execution Vulnerability
- risk 0.70cvss 9.8epss 0.77
Windows Network File System Remote Code Execution Vulnerability
- risk 0.66cvss 9.8epss 0.35
Windows Network File System Remote Code Execution Vulnerability
- risk 0.66cvss 9.8epss 0.33
Windows Network File System Remote Code Execution Vulnerability
- risk 0.64cvss 9.8epss 0.11
Windows Network File System Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.05
Windows Network File System Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.03
Windows Network File System Remote Code Execution Vulnerability
- risk 0.51cvss 7.5epss 0.27
Windows Network File System Denial of Service Vulnerability
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege vulnerability exists in the way that the Windows Network File System (NFS) handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally…
- risk 0.49cvss 7.5epss 0.02
Windows Network File System Information Disclosure Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Network File System Remote Code Execution Vulnerability
- risk 0.39cvss 5.9epss 0.02
Windows Network File System Information Disclosure Vulnerability
- risk 0.38cvss 5.9epss 0.01
Buffer over-read in Windows Network File System allows an unauthorized attacker to deny service over a network.
- risk 0.36cvss 5.5epss 0.01
Windows Network File System Information Disclosure Vulnerability
- risk 0.00cvss 7.8epss 0.00
Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 5.9epss 0.01
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.5epss 0.00
Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevate privileges over a network.