VendorsMicrosoftwindows_server_2008all versions
Vulnerabilities

Microsoft Windows Server 2008 for 32-bit Systems

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4076CVEs
CVE-2019-1267
An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable to symbolic link and hard link attacks, aka 'Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability'.
Published 2019-09-11 · Modified
7.8EPSS 0.012
CVE-2019-1082
An elevation of privilege vulnerability exists in Microsoft Windows where a certain DLL, with Local Service privilege, is vulnerable to race planting a customized DLL.An attacker who successfully exploited this vulnerability could potentially elevate privilege to SYSTEM.The update addresses this vulnerability by requiring SYSTEM privileges for a certain DLL., aka 'Microsoft Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1074.
Published 2019-07-15 · Modified
7.8EPSS 0.012
CVE-2019-1342
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1315, CVE-2019-1339.
Published 2019-10-10 · Modified
7.8EPSS 0.012
CVE-2011-0676
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, a different vulnerability than other "Vulnerability Type 2" CVEs listed in MS11-034, aka "Win32k Null Pointer De-reference Vulnerability."
Published 2011-04-13 · Modified
7.8EPSS 0.012
CVE-2011-1236
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that leverages incorrect driver object management, a different vulnerability than other "Vulnerability Type 1" CVEs listed in MS11-034, aka "Win32k Use After Free Vulnerability."
Published 2011-04-13 · Modified
7.8EPSS 0.012
CVE-2011-1887
win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, a different vulnerability than other CVEs listed in MS11-054, aka "Win32k Null Pointer De-reference Vulnerability."
Published 2011-07-13 · Modified
7.8EPSS 0.012
CVE-2011-1874
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that leverages incorrect driver object management, a different vulnerability than other CVEs listed in MS11-054, aka "Win32k Use After Free Vulnerability."
Published 2011-07-13 · Modified
7.8EPSS 0.012
CVE-2022-41089
.NET Framework Remote Code Execution Vulnerability
Published 2022-12-13 · Modified
7.8EPSS 0.012
CVE-2021-26862
Windows Installer Elevation of Privilege Vulnerability
Published 2021-03-11 · Modified
7.8EPSS 0.012
CVE-2022-30164
Kerberos AppContainer Security Feature Bypass Vulnerability
Published 2022-06-15 · Modified
7.8EPSS 0.012
CVE-2020-1475
Windows Server Resource Management Service Elevation of Privilege Vulnerability
Published 2020-08-17 · Modified
7.8EPSS 0.012
CVE-2023-21808
.NET and Visual Studio Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
7.8EPSS 0.011
CVE-2021-36963
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Published 2021-09-15 · Modified
7.8EPSS 0.011
CVE-2021-26873
Windows User Profile Service Elevation of Privilege Vulnerability
Published 2021-03-11 · Modified
7.8EPSS 0.011
CVE-2020-16962
Windows Backup Engine Elevation of Privilege Vulnerability
Published 2020-12-09 · Modified
7.8EPSS 0.011
CVE-2020-16963
Windows Backup Engine Elevation of Privilege Vulnerability
Published 2020-12-09 · Modified
7.8EPSS 0.011
CVE-2020-16959
Windows Backup Engine Elevation of Privilege Vulnerability
Published 2020-12-09 · Modified
7.8EPSS 0.011
CVE-2020-16964
Windows Backup Engine Elevation of Privilege Vulnerability
Published 2020-12-09 · Modified
7.8EPSS 0.011
CVE-2020-16958
Windows Backup Engine Elevation of Privilege Vulnerability
Published 2020-12-09 · Modified
7.8EPSS 0.011
CVE-2020-1070
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1048.
Published 2020-05-21 · Modified
7.8EPSS 0.011
CVE-2022-38004
Windows Fax Service Remote Code Execution Vulnerability
Published 2022-09-13 · Modified
7.8EPSS 0.011
CVE-2022-41057
Windows HTTP.sys Elevation of Privilege Vulnerability
Published 2022-11-09 · Modified
7.8EPSS 0.011
CVE-2017-0102
Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 let attackers with access to targets systems gain privileges when Windows fails to properly validate buffer lengths, aka "Windows Elevation of Privilege Vulnerability."
Published 2017-03-17 · Modified
7.8EPSS 0.011
CVE-2020-1470
Windows Work Folders Service Elevation of Privilege Vulnerability
Published 2020-08-17 · Modified
7.8EPSS 0.011
CVE-2024-38051
Windows Graphics Component Remote Code Execution Vulnerability
Published 2024-07-09 · Modified
7.8EPSS 0.011
CVE-2020-0791
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory, aka 'Windows Graphics Component Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0898.
Published 2020-03-12 · Modified
7.8EPSS 0.011
CVE-2018-8641
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8639.
Published 2018-12-12 · Modified
7.8EPSS 0.011
CVE-2023-36710
Windows Media Foundation Core Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.8EPSS 0.011
CVE-2026-20922
Windows NTFS Remote Code Execution Vulnerability
Published 2026-01-13 · Analyzed
7.8EPSS 0.011
CVE-2020-1030
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2020-09-11 · Modified
7.8EPSS 0.011
CVE-2017-0193
Windows Hyper-V in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to gain elevated privileges on a target guest operating system when Windows Hyper-V instruction emulation fails to properly enforce privilege levels, aka "Hypervisor Code Integrity Elevation of Privilege Vulnerability".
Published 2017-06-15 · Modified
7.8EPSS 0.011
CVE-2019-1341
An elevation of privilege vulnerability exists when umpo.dll of the Power Service, improperly handles a Registry Restore Key function, aka 'Windows Power Service Elevation of Privilege Vulnerability'.
Published 2019-10-10 · Modified
7.8EPSS 0.011
CVE-2020-1115
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Published 2020-09-11 · Modified
7.8EPSS 0.011
CVE-2022-37964
Windows Kernel Elevation of Privilege Vulnerability
Published 2022-09-13 · Modified
7.8EPSS 0.011
CVE-2022-41121
Windows Graphics Component Elevation of Privilege Vulnerability
Published 2022-12-13 · Modified
7.8EPSS 0.011
CVE-2023-21740
Windows Media Remote Code Execution Vulnerability
Published 2023-12-12 · Modified
7.8EPSS 0.011
CVE-2021-34483
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2021-08-12 · Modified
7.8EPSS 0.011
CVE-2020-1143
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1054.
Published 2020-05-21 · Modified
7.8EPSS 0.011
CVE-2022-35768
Windows Kernel Elevation of Privilege Vulnerability
Published 2022-08-09 · Modified
7.8EPSS 0.011
CVE-2024-49090
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Published 2024-12-10 · Analyzed
7.8EPSS 0.011
← Prev42 / 102Next →