VendorsMicrosoftwindows_server_2016any version
Vulnerabilities

Microsoft Windows Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5805CVEs
CVE-2026-49798
Windows Kernel Elevation of Privilege Vulnerability
Published 2026-07-14 · Analyzed
9.3EPSS 0.004
CVE-2019-0719
A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0721.
Published 2019-11-12 · Modified
9.1EPSS 0.114
CVE-2024-38159
Windows Network Virtualization Remote Code Execution Vulnerability
Published 2024-08-13 · Analyzed
9.1EPSS 0.022
CVE-2024-38160
Windows Network Virtualization Remote Code Execution Vulnerability
Published 2024-08-13 · Analyzed
9.1EPSS 0.022
CVE-2023-21557
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Published 2023-01-10 · Modified
9.1EPSS 0.020
CVE-2026-45602
Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability
Published 2026-06-09 · Modified
9.1EPSS 0.004
CVE-2021-34527
Windows Print Spooler Remote Code Execution Vulnerability
Published 2021-07-02 · Analyzed
9.0KEVEPSS 0.998
CVE-2022-26923
Active Directory Domain Services Elevation of Privilege Vulnerability
Published 2022-05-10 · Analyzed
9.0KEVEPSS 0.835
CVE-2020-17096
Windows NTFS Remote Code Execution Vulnerability
Published 2020-12-09 · Modified
9.0EPSS 0.195
CVE-2019-0856
A remote code execution vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Remote Code Execution Vulnerability'.
Published 2019-04-09 · Modified
9.0EPSS 0.194
CVE-2019-0630
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 2.0 (SMBv2) server handles certain requests, aka 'Windows SMB Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0633.
Published 2019-03-06 · Modified
9.0EPSS 0.174
CVE-2018-8450
A remote code execution vulnerability exists when Windows Search handles objects in memory, aka "Windows Search Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Published 2018-11-14 · Modified
9.0EPSS 0.161
CVE-2020-17049
Kerberos KDC Security Feature Bypass Vulnerability
Published 2020-11-11 · Modified
9.0EPSS 0.138
CVE-2020-0662
A remote code execution vulnerability exists in the way that Windows handles objects in memory, aka 'Windows Remote Code Execution Vulnerability'.
Published 2020-02-11 · Modified
9.0EPSS 0.133
CVE-2019-0633
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 2.0 (SMBv2) server handles certain requests, aka 'Windows SMB Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0630.
Published 2019-03-06 · Modified
9.0EPSS 0.130
CVE-2020-1040
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1041, CVE-2020-1042, CVE-2020-1043.
Published 2020-07-14 · Analyzed
9.0KEVEPSS 0.074
CVE-2020-1036
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1040, CVE-2020-1041, CVE-2020-1042, CVE-2020-1043.
Published 2020-07-14 · Modified
9.0EPSS 0.062
CVE-2020-1042
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1043.
Published 2020-07-14 · Modified
9.0EPSS 0.060
CVE-2020-1043
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1042.
Published 2020-07-14 · Modified
9.0EPSS 0.059
CVE-2020-1041
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1042, CVE-2020-1043.
Published 2020-07-14 · Modified
9.0EPSS 0.059
CVE-2020-1032
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1042, CVE-2020-1043.
Published 2020-07-14 · Modified
9.0EPSS 0.059
CVE-2019-0722
Windows Hyper-V Remote Code Execution Vulnerability
Published 2019-06-12 · Modified
9.0EPSS 0.047
CVE-2020-1317
An elevation of privilege vulnerability exists when Group Policy improperly checks access, aka 'Group Policy Elevation of Privilege Vulnerability'.
Published 2020-06-09 · Modified
9.0EPSS 0.044
CVE-2022-26826
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.040
CVE-2022-26815
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.038
CVE-2022-24536
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.038
CVE-2022-26812
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.038
CVE-2022-26813
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.038
CVE-2021-1667
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
9.0EPSS 0.036
CVE-2021-1701
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
9.0EPSS 0.036
CVE-2021-1700
Remote Procedure Call Runtime Remote Code Execution Vulnerability
Published 2021-01-12 · Modified
9.0EPSS 0.036
CVE-2022-26811
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.036
CVE-2022-26825
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.036
CVE-2022-26824
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.035
CVE-2022-26823
Windows DNS Server Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
9.0EPSS 0.035
CVE-2019-0938
An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser, aka 'Microsoft Edge Elevation of Privilege Vulnerability'.
Published 2019-05-16 · Modified
9.0EPSS 0.034
CVE-2022-23284
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2022-03-09 · Modified
9.0EPSS 0.032
CVE-2022-29129
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Published 2022-05-10 · Modified
9.0EPSS 0.028
CVE-2022-29128
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Published 2022-05-10 · Modified
9.0EPSS 0.028
CVE-2022-29131
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Published 2022-05-10 · Modified
9.0EPSS 0.028
← Prev12 / 146Next →