VendorsMicrosoftwindows_server_2008r2
Vulnerabilities

Microsoft Windows Server 2008 for 32-bit Systems r2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3562CVEs
CVE-2016-0026
The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows local users to gain privileges via a crafted application, aka "Windows Common Log File System Driver Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3332, CVE-2016-3333, CVE-2016-3334, CVE-2016-3335, CVE-2016-3338, CVE-2016-3340, CVE-2016-3342, CVE-2016-3343, and CVE-2016-7184.
Published 2016-11-10 · Modified
9.3EPSS 0.068
CVE-2016-7184
The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows local users to gain privileges via a crafted application, aka "Windows Common Log File System Driver Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-0026, CVE-2016-3332, CVE-2016-3333, CVE-2016-3334, CVE-2016-3335, CVE-2016-3338, CVE-2016-3340, CVE-2016-3342, and CVE-2016-3343.
Published 2016-11-10 · Modified
9.3EPSS 0.068
CVE-2017-8578
Win32k in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation of privilege vulnerability when it fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-8577, CVE-2017-8580, CVE-2017-8581, and CVE-2017-8467.
Published 2017-07-11 · Modified
9.3EPSS 0.065
CVE-2017-11847
Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to run arbitrary code in kernel mode, install programs, view, change or delete data, and create new accounts with full user rights due to improperly handing objects in memory, aka "Windows Kernel Elevation of Privilege Vulnerability".
Published 2017-11-15 · Modified
9.3EPSS 0.065
CVE-2017-0166
An elevation of privilege vulnerability exists in Windows when LDAP request buffer lengths are improperly calculated. In a remote attack scenario, an attacker could exploit this vulnerability by running a specially crafted application to send malicious traffic to a Domain Controller, aka "LDAP Elevation of Privilege Vulnerability."
Published 2017-04-12 · Modified
9.3EPSS 0.064
CVE-2020-1013
Group Policy Elevation of Privilege Vulnerability
Published 2020-09-11 · Modified
9.3EPSS 0.064
CVE-2020-0738
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'.
Published 2020-02-11 · Modified
9.3EPSS 0.061
CVE-2019-0906
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.057
CVE-2020-17042
Windows Print Spooler Remote Code Execution Vulnerability
Published 2020-11-11 · Modified
9.3EPSS 0.051
CVE-2019-1183
Windows VBScript Engine Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.048
CVE-2019-0908
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.046
CVE-2019-1157
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.045
CVE-2019-1146
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.045
CVE-2019-1156
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.043
CVE-2019-1147
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.043
CVE-2019-1155
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.043
CVE-2020-1039
Jet Database Engine Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
9.3EPSS 0.043
CVE-2019-0734
An elevation of privilege vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully decode and replace authentication request using Kerberos, allowing an attacker to be validated as an Administrator.The update addresses this vulnerability by changing how these requests are validated., aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0936.
Published 2019-05-16 · Modified
9.3EPSS 0.042
CVE-2020-16924
Jet Database Engine Remote Code Execution Vulnerability
Published 2020-10-16 · Modified
9.3EPSS 0.041
CVE-2019-0905
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.041
CVE-2019-0907
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.041
CVE-2019-0904
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.041
CVE-2019-0974
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.041
CVE-2020-1285
GDI+ Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
9.3EPSS 0.040
CVE-2020-1153
A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Remote Code Execution Vulnerability'.
Published 2020-05-21 · Modified
9.3EPSS 0.038
CVE-2020-1046
.NET Framework Remote Code Execution Vulnerability
Published 2020-08-17 · Modified
9.3EPSS 0.038
CVE-2020-1175
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1051, CVE-2020-1174, CVE-2020-1176.
Published 2020-05-21 · Modified
9.3EPSS 0.037
CVE-2020-1051
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1174, CVE-2020-1175, CVE-2020-1176.
Published 2020-05-21 · Modified
9.3EPSS 0.037
CVE-2020-1176
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1051, CVE-2020-1174, CVE-2020-1175.
Published 2020-05-21 · Modified
9.3EPSS 0.037
CVE-2020-1174
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1051, CVE-2020-1175, CVE-2020-1176.
Published 2020-05-21 · Modified
9.3EPSS 0.037
CVE-2021-1668
Microsoft DTV-DVD Video Decoder Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
9.3EPSS 0.036
CVE-2019-0909
Jet Database Engine Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.3EPSS 0.036
CVE-2020-1339
Windows Media Remote Code Execution Vulnerability
Published 2020-08-17 · Modified
9.3EPSS 0.034
CVE-2020-1061
A remote code execution vulnerability exists in the way that the Microsoft Script Runtime handles objects in memory, aka 'Microsoft Script Runtime Remote Code Execution Vulnerability'.
Published 2020-05-21 · Modified
9.3EPSS 0.033
CVE-2020-1508
Windows Media Audio Decoder Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
9.3EPSS 0.033
CVE-2022-24492
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.3EPSS 0.031
CVE-2019-1057
MS XML Remote Code Execution Vulnerability
Published 2019-08-14 · Modified
9.3EPSS 0.031
CVE-2022-24541
Windows Server Service Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.3EPSS 0.030
CVE-2022-21851
Remote Desktop Client Remote Code Execution Vulnerability
Published 2022-01-11 · Modified
9.3EPSS 0.028
CVE-2022-21850
Remote Desktop Client Remote Code Execution Vulnerability
Published 2022-01-11 · Modified
9.3EPSS 0.028
← Prev13 / 90Next →