VendorsMicrosoftwindows_server_20161903
Vulnerabilities

Microsoft Windows Server 1903

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1018CVEs
CVE-2020-1258
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1310
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1253.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1253
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1310.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2020-1251
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1253, CVE-2020-1310.
Published 2020-06-09 · Modified
7.2EPSS 0.009
CVE-2019-1176
DirectX Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.2EPSS 0.008
CVE-2019-1347
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1343, CVE-2019-1346.
Published 2019-10-10 · Modified
7.11 PoCEPSS 0.149
CVE-2019-1343
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1346, CVE-2019-1347.
Published 2019-10-10 · Modified
7.11 PoCEPSS 0.109
CVE-2019-1346
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1343, CVE-2019-1347.
Published 2019-10-10 · Modified
7.11 PoCEPSS 0.109
CVE-2020-1283
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.
Published 2020-06-09 · Modified
7.1EPSS 0.088
CVE-2020-1244
A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-1120.
Published 2020-06-09 · Modified
7.1EPSS 0.030
CVE-2019-0986
Windows User Profile Service Elevation of Privilege Vulnerability
Published 2019-06-12 · Modified
7.1EPSS 0.021
CVE-2020-16877
Windows Elevation of Privilege Vulnerability
Published 2020-10-16 · Modified
7.1EPSS 0.010
CVE-2020-0730
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.
Published 2020-02-11 · Modified
7.1EPSS 0.009
CVE-2020-1204
An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability'.
Published 2020-06-09 · Modified
7.1EPSS 0.008
CVE-2020-0936
An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file redirections, aka 'Windows Scheduled Task Elevation of Privilege Vulnerability'.
Published 2020-04-15 · Modified
7.1EPSS 0.008
CVE-2020-0942
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0944, CVE-2020-1029.
Published 2020-04-15 · Modified
7.1EPSS 0.008
CVE-2020-0854
An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability'.
Published 2020-03-12 · Modified
7.1EPSS 0.008
CVE-2020-1461
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.
Published 2020-07-14 · Modified
7.1EPSS 0.007
CVE-2020-0785
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.
Published 2020-03-12 · Modified
7.1EPSS 0.007
CVE-2020-1002
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.
Published 2020-04-15 · Modified
7.1EPSS 0.007
CVE-2020-1364
A denial of service vulnerability exists in the way that the WalletService handles files, aka 'Windows WalletService Denial of Service Vulnerability'.
Published 2020-07-14 · Modified
7.1EPSS 0.007
CVE-2019-0707
An elevation of privilege vulnerability exists in the Network Driver Interface Specification (NDIS) when ndis.sys fails to check the length of a buffer prior to copying memory to it.To exploit the vulnerability, in a local attack scenario, an attacker could run a specially crafted application to elevate the attacker's privilege level, aka 'Windows NDIS Elevation of Privilege Vulnerability'.
Published 2019-05-16 · Modified
7.0EPSS 0.009
CVE-2019-0931
An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows Storage Service Elevation of Privilege Vulnerability'.
Published 2019-05-16 · Modified
7.0EPSS 0.009
CVE-2019-1178
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.008
CVE-2019-1179
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.008
CVE-2019-1180
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.008
CVE-2019-1037
An elevation of privilege vulnerability exists in the way Windows Error Reporting (WER) handles files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.
Published 2019-07-15 · Modified
7.0EPSS 0.008
CVE-2019-1173
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.007
CVE-2019-1186
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.007
CVE-2019-1174
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.007
CVE-2019-1175
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.007
CVE-2019-1177
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.007
CVE-2019-1416
An elevation of privilege vulnerability exists due to a race condition in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of Privilege Vulnerability'.
Published 2019-11-12 · Modified
7.0EPSS 0.005
CVE-2019-0972
Local Security Authority Subsystem Service Denial of Service Vulnerability
Published 2019-06-12 · Modified
6.8EPSS 0.058
CVE-2019-0712
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1309, CVE-2019-1310, CVE-2019-1399.
Published 2019-11-12 · Modified
6.8EPSS 0.056
CVE-2019-1309
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-0712, CVE-2019-1310, CVE-2019-1399.
Published 2019-11-12 · Modified
6.8EPSS 0.055
CVE-2019-1310
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-0712, CVE-2019-1309, CVE-2019-1399.
Published 2019-11-12 · Modified
6.8EPSS 0.055
CVE-2020-0993
A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, aka 'Windows DNS Denial of Service Vulnerability'.
Published 2020-04-15 · Modified
6.8EPSS 0.052
CVE-2019-1292
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.
Published 2019-09-11 · Modified
6.8EPSS 0.051
CVE-2019-0716
Windows Denial of Service Vulnerability
Published 2019-08-14 · Modified
6.8EPSS 0.044
← Prev20 / 26Next →