VendorsMicrosoftwindows_server_2008r2
Vulnerabilities

Microsoft Windows Server 2008 for 32-bit Systems r2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3562CVEs
CVE-2018-8475
A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "Windows Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Published 2018-09-13 · Modified
8.8EPSS 0.159
CVE-2018-8260
A Remote Code Execution vulnerability exists in .NET software when the software fails to check the source markup of a file, aka ".NET Framework Remote Code Execution Vulnerability." This affects .NET Framework 4.7.2, Microsoft .NET Framework 4.7.2.
Published 2018-07-11 · Modified
8.8EPSS 0.155
CVE-2021-38666
Remote Desktop Client Remote Code Execution Vulnerability
Published 2021-11-10 · Modified
8.8EPSS 0.151
CVE-2015-2360
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
Published 2015-06-10 · Analyzed
8.8KEVEPSS 0.148
CVE-2020-1281
A remote code execution vulnerability exists when Microsoft Windows OLE fails to properly validate user input, aka 'Windows OLE Remote Code Execution Vulnerability'.
Published 2020-06-09 · Modified
8.8EPSS 0.145
CVE-2025-29962
Windows Media Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
8.8EPSS 0.143
CVE-2024-43532
Remote Registry Service Elevation of Privilege Vulnerability
Published 2024-10-08 · Analyzed
8.8EPSS 0.120
CVE-2019-1419
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles specially crafted OpenType fonts, aka 'OpenType Font Parsing Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1456.
Published 2019-11-12 · Modified
8.8EPSS 0.116
CVE-2019-1113
A remote code execution vulnerability exists in .NET software when the software fails to check the source markup of a file.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka '.NET Framework Remote Code Execution Vulnerability'.
Published 2019-07-29 · Modified
8.8EPSS 0.100
CVE-2019-1456
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles specially crafted OpenType fonts, aka 'OpenType Font Parsing Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1419.
Published 2019-11-12 · Modified
8.8EPSS 0.097
CVE-2021-1678
Windows Print Spooler Spoofing Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.093
CVE-2020-0684
A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attacker who successfully exploited this vulnerability could gain the same user rights as the local user, aka 'LNK Remote Code Execution Vulnerability'.
Published 2020-03-12 · Modified
8.8EPSS 0.090
CVE-2025-53143
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
8.8EPSS 0.081
CVE-2025-53144
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
8.8EPSS 0.076
CVE-2025-53145
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
8.8EPSS 0.076
CVE-2021-36947
Windows Print Spooler Remote Code Execution Vulnerability
Published 2021-08-12 · Modified
8.8EPSS 0.075
CVE-2023-35641
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
Published 2023-12-12 · Modified
8.8EPSS 0.072
CVE-2023-35630
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
Published 2023-12-12 · Modified
8.8EPSS 0.061
CVE-2020-1239
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-1238.
Published 2020-06-09 · Modified
8.8EPSS 0.059
CVE-2024-30078
Windows Wi-Fi Driver Remote Code Execution Vulnerability
Published 2024-06-11 · Modified
8.8EPSS 0.052
CVE-2021-42282
Active Directory Domain Services Elevation of Privilege Vulnerability
Published 2021-11-10 · Modified
8.8EPSS 0.042
CVE-2021-42291
Active Directory Domain Services Elevation of Privilege Vulnerability
Published 2021-11-10 · Modified
8.8EPSS 0.042
CVE-2025-54110
Windows Kernel Elevation of Privilege Vulnerability
Published 2025-09-09 · Analyzed
8.8EPSS 0.041
CVE-2021-34494
Windows DNS Server Remote Code Execution Vulnerability
Published 2021-07-14 · Modified
8.8EPSS 0.040
CVE-2020-1012
WinINet API Elevation of Privilege Vulnerability
Published 2020-09-11 · Modified
8.8EPSS 0.037
CVE-2025-27740
Active Directory Certificate Services Elevation of Privilege Vulnerability
Published 2025-04-08 · Analyzed
8.8EPSS 0.034
CVE-2020-1255
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.
Published 2020-06-09 · Modified
8.8EPSS 0.034
CVE-2020-1509
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
Published 2020-08-17 · Modified
8.8EPSS 0.033
CVE-2022-38034
Windows Workstation Service Elevation of Privilege Vulnerability
Published 2022-10-11 · Modified
8.8EPSS 0.032
CVE-2021-34442
Windows DNS Server Remote Code Execution Vulnerability
Published 2021-07-16 · Modified
8.8EPSS 0.031
CVE-2025-26645
Remote Desktop Client Remote Code Execution Vulnerability
Published 2025-03-11 · Analyzed
8.8EPSS 0.031
CVE-2021-36970
Windows Print Spooler Spoofing Vulnerability
Published 2021-10-13 · Modified
8.8EPSS 0.031
CVE-2021-1660
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2021-1664
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2021-1674
Windows Remote Desktop Protocol Core Security Feature Bypass Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2021-1673
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2021-1671
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2021-1666
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2021-1658
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
8.8EPSS 0.030
CVE-2023-36560
ASP.NET Security Feature Bypass Vulnerability
Published 2023-11-14 · Modified
8.8EPSS 0.029
← Prev16 / 90Next →