VendorsMicrosoftwindows_server_20161909
Vulnerabilities

Microsoft Windows Server 1909

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

965CVEs
CVE-2021-1691
Windows Hyper-V Denial of Service Vulnerability
Published 2021-01-12 · Modified
7.7EPSS 0.038
CVE-2021-1638
Windows Bluetooth Security Feature Bypass Vulnerability
Published 2021-01-12 · Modified
7.7EPSS 0.012
CVE-2020-0681
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Client Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0734.
Published 2020-02-11 · Modified
7.6EPSS 0.106
CVE-2020-0908
Windows Text Service Module Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
7.6EPSS 0.033
CVE-2021-24086
Windows TCP/IP Denial of Service Vulnerability
Published 2021-02-25 · Modified
7.5EPSS 0.590
CVE-2020-16896
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
Published 2020-10-16 · Modified
7.5EPSS 0.126
CVE-2020-1206
An information disclosure vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Information Disclosure Vulnerability'.
Published 2020-06-09 · Modified
7.5EPSS 0.105
CVE-2019-1453
A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests, aka 'Windows Remote Desktop Protocol (RDP) Denial of Service Vulnerability'.
Published 2019-12-10 · Modified
7.5EPSS 0.099
CVE-2021-28319
Windows TCP/IP Driver Denial of Service Vulnerability
Published 2021-04-13 · Modified
7.5EPSS 0.094
CVE-2020-1374
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Client Remote Code Execution Vulnerability'.
Published 2020-07-14 · Modified
7.5EPSS 0.091
CVE-2021-26896
Windows DNS Server Denial of Service Vulnerability
Published 2021-03-11 · Modified
7.5EPSS 0.074
CVE-2020-0611
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Client Remote Code Execution Vulnerability'.
Published 2020-01-14 · Modified
7.5EPSS 0.067
CVE-2021-27063
Windows DNS Server Denial of Service Vulnerability
Published 2021-03-11 · Modified
7.5EPSS 0.063
CVE-2021-28439
Windows TCP/IP Driver Denial of Service Vulnerability
Published 2021-04-13 · Modified
7.5EPSS 0.061
CVE-2020-0876
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
Published 2020-03-12 · Modified
7.5EPSS 0.059
CVE-2020-0660
A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests, aka 'Windows Remote Desktop Protocol (RDP) Denial of Service Vulnerability'.
Published 2020-02-11 · Modified
7.5EPSS 0.054
CVE-2020-1031
Windows DHCP Server Information Disclosure Vulnerability
Published 2020-09-11 · Modified
7.5EPSS 0.051
CVE-2020-0836
Windows DNS Denial of Service Vulnerability
Published 2020-09-11 · Modified
7.5EPSS 0.051
CVE-2020-0909
A denial of service vulnerability exists when Hyper-V on a Windows Server fails to properly handle specially crafted network packets.To exploit the vulnerability, an attacker would send specially crafted network packets to the Hyper-V Server.The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to properly handle these network packets., aka 'Windows Hyper-V Denial of Service Vulnerability'.
Published 2020-05-21 · Modified
7.5EPSS 0.046
CVE-2020-1228
Windows DNS Denial of Service Vulnerability
Published 2020-09-11 · Modified
7.5EPSS 0.045
CVE-2020-0645
A tampering vulnerability exists when Microsoft IIS Server improperly handles malformed request headers, aka 'Microsoft IIS Server Tampering Vulnerability'.
Published 2020-03-12 · Modified
7.5EPSS 0.039
CVE-2021-24111
.NET Framework Denial of Service Vulnerability
Published 2021-02-25 · Modified
7.5EPSS 0.038
CVE-2021-1734
Windows Remote Procedure Call Information Disclosure Vulnerability
Published 2021-02-25 · Modified
7.5EPSS 0.038
CVE-2021-26879
Windows Network Address Translation (NAT) Denial of Service Vulnerability
Published 2021-03-11 · Modified
7.5EPSS 0.036
CVE-2020-16949
Microsoft Outlook Denial of Service Vulnerability
Published 2020-10-16 · Modified
7.5EPSS 0.030
CVE-2021-31186
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
Published 2021-05-11 · Modified
7.4EPSS 0.030
CVE-2020-0917
An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0918.
Published 2020-04-15 · Modified
7.4EPSS 0.016
CVE-2020-0918
An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0917.
Published 2020-04-15 · Modified
7.4EPSS 0.013
CVE-2020-0951
Windows Defender Application Control Security Feature Bypass Vulnerability
Published 2020-09-11 · Modified
7.2EPSS 0.070
CVE-2020-1258
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1310
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1253.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1253
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1310.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1251
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1253, CVE-2020-1310.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1283
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.
Published 2020-06-09 · Modified
7.1EPSS 0.088
CVE-2020-1244
A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-1120.
Published 2020-06-09 · Modified
7.1EPSS 0.030
CVE-2021-26866
Windows Update Service Elevation of Privilege Vulnerability
Published 2021-03-11 · Modified
7.1EPSS 0.011
CVE-2020-16877
Windows Elevation of Privilege Vulnerability
Published 2020-10-16 · Modified
7.1EPSS 0.010
CVE-2020-0730
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.
Published 2020-02-11 · Modified
7.1EPSS 0.009
CVE-2021-31182
Microsoft Bluetooth Driver Spoofing Vulnerability
Published 2021-05-11 · Modified
7.1EPSS 0.008
CVE-2020-1204
An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability'.
Published 2020-06-09 · Modified
7.1EPSS 0.008
← Prev19 / 25Next →