VendorsMicrosoftwindows_server_20161909
Vulnerabilities

Microsoft Windows Server 1909

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

965CVEs
CVE-2020-0936
An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file redirections, aka 'Windows Scheduled Task Elevation of Privilege Vulnerability'.
Published 2020-04-15 · Modified
7.1EPSS 0.008
CVE-2020-0942
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0944, CVE-2020-1029.
Published 2020-04-15 · Modified
7.1EPSS 0.008
CVE-2021-28446
Windows Portmapping Information Disclosure Vulnerability
Published 2021-04-13 · Modified
7.1EPSS 0.008
CVE-2020-0854
An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability'.
Published 2020-03-12 · Modified
7.1EPSS 0.008
CVE-2020-0785
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.
Published 2020-03-12 · Modified
7.1EPSS 0.007
CVE-2020-1002
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.
Published 2020-04-15 · Modified
7.1EPSS 0.007
CVE-2020-1364
A denial of service vulnerability exists in the way that the WalletService handles files, aka 'Windows WalletService Denial of Service Vulnerability'.
Published 2020-07-14 · Modified
7.1EPSS 0.007
CVE-2020-0993
A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, aka 'Windows DNS Denial of Service Vulnerability'.
Published 2020-04-15 · Modified
6.8EPSS 0.052
CVE-2020-0661
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-0751.
Published 2020-02-11 · Modified
6.8EPSS 0.016
CVE-2020-1398
An elevation of privilege vulnerability exists when Windows Lockscreen fails to properly handle Ease of Access dialog.An attacker who successfully exploited the vulnerability could execute commands with elevated permissions.The security update addresses the vulnerability by ensuring that the Ease of Access dialog is handled properly., aka 'Windows Lockscreen Elevation of Privilege Vulnerability'.
Published 2020-07-14 · Modified
6.8EPSS 0.012
CVE-2020-0689
A security feature bypass vulnerability exists in secure boot, aka 'Microsoft Secure Boot Security Feature Bypass Vulnerability'.
Published 2020-02-11 · Modified
6.7EPSS 0.011
CVE-2020-1333
An elevation of privilege vulnerability exists when Group Policy Services Policy Processing improperly handle reparse points, aka 'Group Policy Services Policy Processing Elevation of Privilege Vulnerability'.
Published 2020-07-14 · Modified
6.7EPSS 0.009
CVE-2021-28325
Windows SMB Information Disclosure Vulnerability
Published 2021-04-13 · Modified
6.5EPSS 0.621
CVE-2021-28312
Windows NTFS Denial of Service Vulnerability
Published 2021-04-13 · Modified
6.5EPSS 0.066
CVE-2020-0853
An information disclosure vulnerability exists in Windows when the Windows Imaging Component fails to properly handle objects in memory, aka 'Windows Imaging Component Information Disclosure Vulnerability'.
Published 2020-03-12 · Modified
6.5EPSS 0.066
CVE-2021-28442
Windows TCP/IP Information Disclosure Vulnerability
Published 2021-04-13 · Modified
6.5EPSS 0.065
CVE-2020-1397
An information disclosure vulnerability exists in Windows when the Windows Imaging Component fails to properly handle objects in memory, aka 'Windows Imaging Component Information Disclosure Vulnerability'.
Published 2020-07-14 · Modified
6.5EPSS 0.064
CVE-2020-0882
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0774, CVE-2020-0874, CVE-2020-0879, CVE-2020-0880.
Published 2020-03-12 · Modified
6.5EPSS 0.063
CVE-2020-0880
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0774, CVE-2020-0874, CVE-2020-0879, CVE-2020-0882.
Published 2020-03-12 · Modified
6.5EPSS 0.063
CVE-2020-0952
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
Published 2020-04-15 · Modified
6.5EPSS 0.059
CVE-2020-1232
An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'.
Published 2020-06-09 · Modified
6.5EPSS 0.059
CVE-2020-0774
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0874, CVE-2020-0879, CVE-2020-0880, CVE-2020-0882.
Published 2020-03-12 · Modified
6.5EPSS 0.059
CVE-2019-1465
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1466, CVE-2019-1467.
Published 2019-12-10 · Modified
6.5EPSS 0.056
CVE-2019-1466
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1465, CVE-2019-1467.
Published 2019-12-10 · Modified
6.5EPSS 0.056
CVE-2019-1467
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1465, CVE-2019-1466.
Published 2019-12-10 · Modified
6.5EPSS 0.056
CVE-2020-1348
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
Published 2020-06-09 · Modified
6.5EPSS 0.052
CVE-2020-1468
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
Published 2020-07-14 · Modified
6.5EPSS 0.052
CVE-2020-1179
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0963, CVE-2020-1141, CVE-2020-1145.
Published 2020-05-21 · Modified
6.5EPSS 0.050
CVE-2020-0637
An information disclosure vulnerability exists when Remote Desktop Web Access improperly handles credential information, aka 'Remote Desktop Web Access Information Disclosure Vulnerability'.
Published 2020-01-14 · Modified
6.5EPSS 0.050
CVE-2020-0963
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1141, CVE-2020-1145, CVE-2020-1179.
Published 2020-05-21 · Modified
6.5EPSS 0.046
CVE-2020-1097
Windows Graphics Component Information Disclosure Vulnerability
Published 2020-09-11 · Modified
6.5EPSS 0.046
CVE-2020-1091
Windows Graphics Component Information Disclosure Vulnerability
Published 2020-09-11 · Modified
6.5EPSS 0.045
CVE-2021-28323
Windows DNS Information Disclosure Vulnerability
Published 2021-04-13 · Modified
6.5EPSS 0.043
CVE-2020-0664
Active Directory Information Disclosure Vulnerability
Published 2020-09-11 · Modified
6.5EPSS 0.040
CVE-2020-0856
Active Directory Information Disclosure Vulnerability
Published 2020-09-11 · Modified
6.5EPSS 0.039
CVE-2021-1679
Windows CryptoAPI Denial of Service Vulnerability
Published 2021-01-12 · Modified
6.5EPSS 0.035
CVE-2021-24080
Windows Trust Verification API Denial of Service Vulnerability
Published 2021-02-25 · Modified
6.5EPSS 0.031
CVE-2020-0890
Windows Hyper-V Denial of Service Vulnerability
Published 2020-09-11 · Modified
6.5EPSS 0.028
CVE-2021-24082
Microsoft.PowerShell.Utility Module WDAC Security Feature Bypass Vulnerability
Published 2021-02-25 · Modified
6.5EPSS 0.026
CVE-2021-28311
Windows Application Compatibility Cache Denial of Service Vulnerability
Published 2021-04-13 · Modified
6.5EPSS 0.025
← Prev20 / 25Next →