Windows 10 version 1607
by Microsoft
CVEs (1,387)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-25172 | Hig | 0.52 | 8.0 | 0.01 | Mar 10, 2026 | Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. | ||
| CVE-2026-20931 | Hig | 0.52 | 8.0 | 0.01 | Jan 13, 2026 | External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network. | ||
| CVE-2025-62452 | Hig | 0.52 | 8.0 | 0.01 | Nov 11, 2025 | Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. | ||
| CVE-2025-60715 | Hig | 0.52 | 8.0 | 0.01 | Nov 11, 2025 | Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. | ||
| CVE-2025-49691 | Hig | 0.52 | 8.0 | 0.00 | Jul 8, 2025 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over an adjacent network. | ||
| CVE-2025-47972 | Hig | 0.52 | 8.0 | 0.01 | Jul 8, 2025 | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2025-27487 | Hig | 0.52 | 8.0 | 0.01 | Apr 8, 2025 | Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network. | ||
| CVE-2025-21277 | Hig | 0.52 | 7.5 | 0.38 | Jan 14, 2025 | Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability | ||
| CVE-2024-30092 | Hig | 0.52 | 8.0 | 0.01 | Oct 8, 2024 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2024-38054 | Hig | 0.52 | 7.8 | 0.10 | Jul 9, 2024 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-38011 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-38010 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37989 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37988 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37987 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37986 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37981 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37978 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37977 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-37975 | Hig | 0.52 | 8.0 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
- risk 0.52cvss 8.0epss 0.01
Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.
- risk 0.52cvss 8.0epss 0.01
External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.
- risk 0.52cvss 8.0epss 0.01
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.
- risk 0.52cvss 8.0epss 0.01
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.
- risk 0.52cvss 8.0epss 0.00
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over an adjacent network.
- risk 0.52cvss 8.0epss 0.01
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges over a network.
- risk 0.52cvss 8.0epss 0.01
Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
- risk 0.52cvss 7.5epss 0.38
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
- risk 0.52cvss 8.0epss 0.01
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.52cvss 7.8epss 0.10
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
Page 15 of 70