VendorsMicrosoftwindows_server_2016all versions
Vulnerabilities

Microsoft Windows Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6201CVEs
CVE-2022-21895
Windows User Profile Service Elevation of Privilege Vulnerability
Published 2022-01-11 · Modified
7.8EPSS 0.012
CVE-2023-36793
Visual Studio Remote Code Execution Vulnerability
Published 2023-09-12 · Modified
7.8EPSS 0.012
CVE-2023-36794
Visual Studio Remote Code Execution Vulnerability
Published 2023-09-12 · Modified
7.8EPSS 0.012
CVE-2023-36792
Visual Studio Remote Code Execution Vulnerability
Published 2023-09-12 · Modified
7.8EPSS 0.012
CVE-2023-36796
Visual Studio Remote Code Execution Vulnerability
Published 2023-09-12 · Modified
7.8EPSS 0.012
CVE-2019-1303
An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1215, CVE-2019-1253, CVE-2019-1278.
Published 2019-09-11 · Modified
7.8EPSS 0.012
CVE-2018-0844
The Windows Common Log File System (CLFS) driver in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how objects in memory are handled, aka "Windows Common Log File System Driver Elevation Of Privilege Vulnerability". This CVE is unique from CVE-2018-0846.
Published 2018-02-15 · Modified
7.8EPSS 0.012
CVE-2018-0846
The Windows Common Log File System (CLFS) driver in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how objects in memory are handled, aka "Windows Common Log File System Driver Elevation Of Privilege Vulnerability". This CVE is unique from CVE-2018-0844.
Published 2018-02-15 · Modified
7.8EPSS 0.012
CVE-2020-17134
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Published 2020-12-09 · Modified
7.8EPSS 0.012
CVE-2020-0814
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0779, CVE-2020-0798, CVE-2020-0842, CVE-2020-0843.
Published 2020-03-12 · Modified
7.8EPSS 0.012
CVE-2019-1394
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1393, CVE-2019-1395, CVE-2019-1396, CVE-2019-1408, CVE-2019-1434.
Published 2019-11-12 · Modified
7.8EPSS 0.012
CVE-2019-1395
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1393, CVE-2019-1394, CVE-2019-1396, CVE-2019-1408, CVE-2019-1434.
Published 2019-11-12 · Modified
7.8EPSS 0.012
CVE-2019-1396
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1393, CVE-2019-1394, CVE-2019-1395, CVE-2019-1408, CVE-2019-1434.
Published 2019-11-12 · Modified
7.8EPSS 0.012
CVE-2020-1471
Windows CloudExperienceHost Elevation of Privilege Vulnerability
Published 2020-09-11 · Modified
7.8EPSS 0.012
CVE-2021-31969
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Published 2021-06-08 · Modified
7.8EPSS 0.012
CVE-2020-1207
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1247, CVE-2020-1251, CVE-2020-1253, CVE-2020-1310.
Published 2020-06-09 · Modified
7.8EPSS 0.012
CVE-2018-8343
An elevation of privilege vulnerability exists in the Network Driver Interface Specification (NDIS) when ndis.sys fails to check the length of a buffer prior to copying memory to it, aka "Windows NDIS Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8342.
Published 2018-08-15 · Modified
7.8EPSS 0.012
CVE-2018-8471
An elevation of privilege vulnerability exists in the way that the Microsoft RemoteFX Virtual GPU miniport driver handles objects in memory, aka "Microsoft RemoteFX Virtual GPU miniport driver Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 8.1, Windows 7, Windows Server 2019.
Published 2018-11-14 · Modified
7.8EPSS 0.012
CVE-2018-8485
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows Server 2019, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8554, CVE-2018-8561.
Published 2018-11-14 · Modified
7.8EPSS 0.012
CVE-2018-8561
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows Server 2019, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8485, CVE-2018-8554.
Published 2018-11-14 · Modified
7.8EPSS 0.012
CVE-2018-8462
An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX Graphics Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.
Published 2018-09-13 · Modified
7.8EPSS 0.012
CVE-2018-8415
A tampering vulnerability exists in PowerShell that could allow an attacker to execute unlogged code, aka "Microsoft PowerShell Tampering Vulnerability." This affects Windows 7, PowerShell Core 6.1, Windows Server 2012 R2, Windows RT 8.1, PowerShell Core 6.0, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Published 2018-11-14 · Modified
7.8EPSS 0.012
CVE-2023-24897
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
Published 2023-06-14 · Modified
7.8EPSS 0.012
CVE-2019-1267
An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable to symbolic link and hard link attacks, aka 'Microsoft Compatibility Appraiser Elevation of Privilege Vulnerability'.
Published 2019-09-11 · Modified
7.8EPSS 0.012
CVE-2025-24061
Windows Mark of the Web Security Feature Bypass Vulnerability
Published 2025-03-11 · Analyzed
7.8EPSS 0.012
CVE-2020-1548
Windows WaasMedic Service Information Disclosure Vulnerability
Published 2020-08-17 · Modified
7.8EPSS 0.012
CVE-2019-1082
An elevation of privilege vulnerability exists in Microsoft Windows where a certain DLL, with Local Service privilege, is vulnerable to race planting a customized DLL.An attacker who successfully exploited this vulnerability could potentially elevate privilege to SYSTEM.The update addresses this vulnerability by requiring SYSTEM privileges for a certain DLL., aka 'Microsoft Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1074.
Published 2019-07-15 · Modified
7.8EPSS 0.012
CVE-2018-8484
An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX Graphics Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows Server 2019, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers.
Published 2018-10-10 · Modified
7.8EPSS 0.012
CVE-2019-1342
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1315, CVE-2019-1339.
Published 2019-10-10 · Modified
7.8EPSS 0.012
CVE-2018-8329
An Elevation of Privilege vulnerability exists in Windows Subsystem for Linux when it fails to properly handle objects in memory, aka "Linux On Windows Elevation Of Privilege Vulnerability." This affects Windows 10, Windows 10 Servers.
Published 2018-10-10 · Modified
7.8EPSS 0.012
CVE-2024-38184
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Published 2024-08-13 · Modified
7.8EPSS 0.012
CVE-2017-11782
The Microsoft Server Block Message (SMB) on Microsoft Windows 10 1607 and Windows Server 2016, allows an elevation of privilege vulnerability when an attacker sends specially crafted requests to the server, aka "Windows SMB Elevation of Privilege Vulnerability".
Published 2017-10-13 · Modified
7.8EPSS 0.012
CVE-2018-0756
The Windows kernel in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows Kernel Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0742, CVE-2018-0809, CVE-2018-0820 and CVE-2018-0843.
Published 2018-02-15 · Modified
7.8EPSS 0.012
CVE-2019-1065
Windows Kernel Elevation of Privilege Vulnerability
Published 2019-06-12 · Modified
7.8EPSS 0.012
CVE-2021-26431
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
Published 2021-08-12 · Modified
7.8EPSS 0.012
CVE-2022-41089
.NET Framework Remote Code Execution Vulnerability
Published 2022-12-13 · Modified
7.8EPSS 0.012
CVE-2021-26862
Windows Installer Elevation of Privilege Vulnerability
Published 2021-03-11 · Modified
7.8EPSS 0.012
CVE-2023-35356
Windows Kernel Elevation of Privilege Vulnerability
Published 2023-07-11 · Modified
7.8EPSS 0.012
CVE-2022-30164
Kerberos AppContainer Security Feature Bypass Vulnerability
Published 2022-06-15 · Modified
7.8EPSS 0.012
CVE-2020-1475
Windows Server Resource Management Service Elevation of Privilege Vulnerability
Published 2020-08-17 · Modified
7.8EPSS 0.012
← Prev46 / 156Next →