VendorsMicrosoftwindows_server_2019any version
Vulnerabilities

Microsoft Windows Server 2019 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5825CVEs
CVE-2021-34537
Windows Bluetooth Driver Elevation of Privilege Vulnerability
Published 2021-08-12 · Modified
8.0EPSS 0.005
CVE-2025-49691
Windows Miracast Wireless Display Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
8.0EPSS 0.005
CVE-2026-27912
Windows Kerberos Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
8.0EPSS 0.004
CVE-2020-1507
Microsoft COM for Windows Elevation of Privilege Vulnerability
Published 2020-09-11 · Modified
7.9EPSS 0.027
CVE-2026-48576
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Modified
7.9EPSS 0.023
CVE-2026-48573
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Modified
7.9EPSS 0.023
CVE-2022-21995
Windows Hyper-V Remote Code Execution Vulnerability
Published 2022-02-09 · Modified
7.9EPSS 0.010
CVE-2026-48570
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Analyzed
7.9EPSS 0.004
CVE-2026-47656
Windows Boot Manager Security Feature Bypass Vulnerability
Published 2026-06-09 · Analyzed
7.9EPSS 0.004
CVE-2026-45588
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Analyzed
7.9EPSS 0.004
CVE-2026-48568
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Analyzed
7.9EPSS 0.004
CVE-2026-48575
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Analyzed
7.9EPSS 0.004
CVE-2026-48578
Secure Boot Security Feature Bypass Vulnerability
Published 2026-06-09 · Modified
7.9EPSS 0.003
CVE-2020-1147
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'.
Published 2020-07-14 · Analyzed
7.8KEV2 PoCEPSS 0.940
CVE-2021-1732
Windows Win32k Elevation of Privilege Vulnerability
Published 2021-02-25 · Analyzed
7.8KEVEPSS 0.784
CVE-2021-40449
Win32k Elevation of Privilege Vulnerability
Published 2021-10-13 · Analyzed
7.8KEVEPSS 0.741
CVE-2018-8453
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Published 2018-10-10 · Analyzed
7.8KEV1 PoCEPSS 0.700
CVE-2020-0938
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the vulnerability could execute code remotely, aka 'Adobe Font Manager Library Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1020.
Published 2020-04-15 · Analyzed
7.8KEVEPSS 0.690
CVE-2022-34713
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Published 2022-08-09 · Analyzed
7.8KEVEPSS 0.678
CVE-2024-43572
Microsoft Management Console Remote Code Execution Vulnerability
Published 2024-10-08 · Analyzed
7.8KEVEPSS 0.667
CVE-2024-21338
Windows Kernel Elevation of Privilege Vulnerability
Published 2024-02-13 · Analyzed
7.8KEV2 PoCEPSS 0.598
CVE-2022-21882
Win32k Elevation of Privilege Vulnerability
Published 2022-01-11 · Analyzed
7.8KEVEPSS 0.592
CVE-2022-38044
Windows CD-ROM File System Driver Remote Code Execution Vulnerability
Published 2022-10-11 · Modified
7.8EPSS 0.563
CVE-2020-1054
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1143.
Published 2020-05-21 · Analyzed
7.8KEVEPSS 0.542
CVE-2023-28252
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Published 2023-04-11 · Analyzed
7.8KEVEPSS 0.490
CVE-2019-0803
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0685, CVE-2019-0859.
Published 2019-04-09 · Analyzed
7.8KEV1 PoCEPSS 0.450
CVE-2022-37954
DirectX Graphics Kernel Elevation of Privilege Vulnerability
Published 2022-09-13 · Modified
7.8EPSS 0.449
CVE-2022-21993
Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
Published 2022-02-09 · Modified
7.8EPSS 0.436
CVE-2023-36874
Windows Error Reporting Service Elevation of Privilege Vulnerability
Published 2023-07-11 · Analyzed
7.8KEVEPSS 0.434
CVE-2020-0787
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.
Published 2020-03-12 · Analyzed
7.8KEVEPSS 0.425
CVE-2019-0841
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0731, CVE-2019-0796, CVE-2019-0805, CVE-2019-0836.
Published 2019-04-09 · Analyzed
7.8KEV4 PoCEPSS 0.414
CVE-2022-44666
Windows Contacts Remote Code Execution Vulnerability
Published 2022-12-13 · Modified
7.8EPSS 0.414
CVE-2022-21999
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2022-02-09 · Analyzed
7.8KEVEPSS 0.410
CVE-2021-1647
Microsoft Defender Remote Code Execution Vulnerability
Published 2021-01-12 · Analyzed
7.8KEVEPSS 0.394
CVE-2020-1464
Windows Spoofing Vulnerability
Published 2020-08-17 · Analyzed
7.8KEVEPSS 0.389
CVE-2019-1405
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.
Published 2019-11-12 · Analyzed
7.8KEV2 PoCEPSS 0.300
CVE-2024-38193
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Published 2024-08-13 · Analyzed
7.8KEV1 PoCEPSS 0.285
CVE-2022-37969
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Published 2022-09-13 · Analyzed
7.8KEVEPSS 0.283
CVE-2023-36802
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
Published 2023-09-12 · Analyzed
7.8KEVEPSS 0.279
CVE-2020-17047
Windows Network File System Denial of Service Vulnerability
Published 2020-11-11 · Modified
7.8EPSS 0.271
← Prev32 / 146Next →