Windows 10 1909
by Microsoft
CVEs (703)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-1654 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows CSC Service Elevation of Privilege Vulnerability | ||
| CVE-2021-1652 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows CSC Service Elevation of Privilege Vulnerability | ||
| CVE-2021-1653 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows CSC Service Elevation of Privilege Vulnerability | ||
| CVE-2021-1651 | 0.00 | — | 0.00 | Jan 12, 2021 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | ||
| CVE-2021-1650 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows Runtime C++ Template Library Elevation of Privilege Vulnerability | ||
| CVE-2021-1649 | 0.00 | — | 0.00 | Jan 12, 2021 | Active Template Library Elevation of Privilege Vulnerability | ||
| CVE-2021-1648 | 0.00 | — | 0.01 | Jan 12, 2021 | Microsoft splwow64 Elevation of Privilege Vulnerability | ||
| CVE-2021-1646 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows WLAN Service Elevation of Privilege Vulnerability | ||
| CVE-2021-1642 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows AppX Deployment Extensions Elevation of Privilege Vulnerability | ||
| CVE-2021-1638 | 0.00 | — | 0.01 | Jan 12, 2021 | Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate as the locally exchanged public key | ||
| CVE-2021-1637 | 0.00 | — | 0.00 | Jan 12, 2021 | Windows DNS Query Information Disclosure Vulnerability | ||
| CVE-2020-1599 | 0.00 | — | 0.03 | Nov 11, 2020 | Windows Spoofing Vulnerability | ||
| CVE-2020-17088 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | ||
| CVE-2020-17076 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows Update Orchestrator Service Elevation of Privilege Vulnerability | ||
| CVE-2020-17077 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows Update Stack Elevation of Privilege Vulnerability | ||
| CVE-2020-17075 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows USO Core Worker Elevation of Privilege Vulnerability | ||
| CVE-2020-17074 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows Update Orchestrator Service Elevation of Privilege Vulnerability | ||
| CVE-2020-17073 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows Update Orchestrator Service Elevation of Privilege Vulnerability | ||
| CVE-2020-17071 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows Delivery Optimization Information Disclosure Vulnerability | ||
| CVE-2020-17069 | 0.00 | — | 0.00 | Nov 11, 2020 | Windows NDIS Information Disclosure Vulnerability |
- CVE-2021-1654Jan 12, 2021risk 0.00cvss —epss 0.00
Windows CSC Service Elevation of Privilege Vulnerability
- CVE-2021-1652Jan 12, 2021risk 0.00cvss —epss 0.00
Windows CSC Service Elevation of Privilege Vulnerability
- CVE-2021-1653Jan 12, 2021risk 0.00cvss —epss 0.00
Windows CSC Service Elevation of Privilege Vulnerability
- CVE-2021-1651Jan 12, 2021risk 0.00cvss —epss 0.00
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
- CVE-2021-1650Jan 12, 2021risk 0.00cvss —epss 0.00
Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
- CVE-2021-1649Jan 12, 2021risk 0.00cvss —epss 0.00
Active Template Library Elevation of Privilege Vulnerability
- CVE-2021-1648Jan 12, 2021risk 0.00cvss —epss 0.01
Microsoft splwow64 Elevation of Privilege Vulnerability
- CVE-2021-1646Jan 12, 2021risk 0.00cvss —epss 0.00
Windows WLAN Service Elevation of Privilege Vulnerability
- CVE-2021-1642Jan 12, 2021risk 0.00cvss —epss 0.00
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
- CVE-2021-1638Jan 12, 2021risk 0.00cvss —epss 0.01
Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate as the locally exchanged public key
- CVE-2021-1637Jan 12, 2021risk 0.00cvss —epss 0.00
Windows DNS Query Information Disclosure Vulnerability
- CVE-2020-1599Nov 11, 2020risk 0.00cvss —epss 0.03
Windows Spoofing Vulnerability
- CVE-2020-17088Nov 11, 2020risk 0.00cvss —epss 0.00
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- CVE-2020-17076Nov 11, 2020risk 0.00cvss —epss 0.00
Windows Update Orchestrator Service Elevation of Privilege Vulnerability
- CVE-2020-17077Nov 11, 2020risk 0.00cvss —epss 0.00
Windows Update Stack Elevation of Privilege Vulnerability
- CVE-2020-17075Nov 11, 2020risk 0.00cvss —epss 0.00
Windows USO Core Worker Elevation of Privilege Vulnerability
- CVE-2020-17074Nov 11, 2020risk 0.00cvss —epss 0.00
Windows Update Orchestrator Service Elevation of Privilege Vulnerability
- CVE-2020-17073Nov 11, 2020risk 0.00cvss —epss 0.00
Windows Update Orchestrator Service Elevation of Privilege Vulnerability
- CVE-2020-17071Nov 11, 2020risk 0.00cvss —epss 0.00
Windows Delivery Optimization Information Disclosure Vulnerability
- CVE-2020-17069Nov 11, 2020risk 0.00cvss —epss 0.00
Windows NDIS Information Disclosure Vulnerability
Page 26 of 36