VendorsMicrosoftwindows_server_2016any version
Vulnerabilities

Microsoft Windows Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5805CVEs
CVE-2025-21286
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.013
CVE-2025-21273
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.013
CVE-2025-21282
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.013
CVE-2019-1053
Windows Shell Elevation of Privilege Vulnerability
Published 2019-06-12 · Modified
8.8EPSS 0.013
CVE-2023-32038
Microsoft ODBC Driver Remote Code Execution Vulnerability
Published 2023-07-11 · Modified
8.8EPSS 0.012
CVE-2025-27481
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-04-08 · Analyzed
8.8EPSS 0.012
CVE-2023-21685
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
8.8EPSS 0.012
CVE-2023-21798
Microsoft ODBC Driver Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
8.8EPSS 0.012
CVE-2023-21799
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
8.8EPSS 0.012
CVE-2023-21797
Microsoft ODBC Driver Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
8.8EPSS 0.012
CVE-2018-8219
An elevation of privilege vulnerability exists when Windows Hyper-V instruction emulation fails to properly enforce privilege levels, aka "Hypervisor Code Integrity Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.
Published 2018-06-14 · Modified
8.8EPSS 0.012
CVE-2025-21417
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.012
CVE-2017-8503
Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to escape from the AppContainer sandbox, aka "Microsoft Edge Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-8642.
Published 2017-08-08 · Modified
8.8EPSS 0.012
CVE-2024-28899
Secure Boot Security Feature Bypass Vulnerability
Published 2024-07-09 · Modified
8.8EPSS 0.012
CVE-2023-21686
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
8.8EPSS 0.012
CVE-2024-38053
Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability
Published 2024-07-09 · Modified
8.8EPSS 0.011
CVE-2025-21339
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.011
CVE-2025-21413
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.011
CVE-2025-21409
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.011
CVE-2025-21411
Windows Telephony Service Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.8EPSS 0.011
CVE-2025-33066
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Published 2025-06-10 · Analyzed
8.8EPSS 0.011
CVE-2021-26865
Windows Container Execution Agent Elevation of Privilege Vulnerability
Published 2021-03-11 · Modified
8.8EPSS 0.011
CVE-2023-35387
Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability
Published 2023-08-08 · Modified
8.8EPSS 0.011
CVE-2023-21695
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
8.8EPSS 0.010
CVE-2025-64678
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Published 2025-12-09 · Analyzed
8.8EPSS 0.010
CVE-2022-22026
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Published 2022-07-12 · Modified
8.8EPSS 0.010
CVE-2025-29840
Windows Media Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
8.8EPSS 0.010
CVE-2025-49757
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
8.8EPSS 0.010
CVE-2024-43518
Windows Telephony Server Remote Code Execution Vulnerability
Published 2024-10-08 · Analyzed
8.8EPSS 0.010
CVE-2017-8590
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to the way that the Windows Common Log File System (CLFS) driver handles objects in memory, aka "Windows CLFS Elevation of Privilege Vulnerability".
Published 2017-07-11 · Modified
8.8EPSS 0.010
CVE-2025-48817
Remote Desktop Client Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
8.8EPSS 0.010
CVE-2025-49657
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
8.8EPSS 0.010
CVE-2020-16891
Windows Hyper-V Remote Code Execution Vulnerability
Published 2020-10-16 · Modified
8.8EPSS 0.009
CVE-2025-50163
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
8.8EPSS 0.009
CVE-2026-62818
Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
8.8EPSS 0.009
CVE-2026-49178
Windows Active Directory Domain Services Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
8.8EPSS 0.009
CVE-2026-50666
Windows Remote Access Elevation of Privilege Vulnerability
Published 2026-07-14 · Analyzed
8.8EPSS 0.009
CVE-2026-56647
Windows Remote Access Service Infrastructure Elevation of Privilege Vulnerability
Published 2026-07-14 · Analyzed
8.8EPSS 0.009
CVE-2026-62790
Windows SMBv3 Server Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
8.8EPSS 0.009
CVE-2026-48564
DHCP Server Service Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
8.8EPSS 0.009
← Prev22 / 146Next →