Microsoft Windows 10 Servers vulnerabilities
135 known vulnerabilities affecting microsoft/windows_10_servers.
Total CVEs
135
CISA KEV
7
actively exploited
Public exploits
22
Exploited in wild
11
Severity breakdown
CRITICAL3HIGH77MEDIUM52LOW3
Vulnerabilities
Page 7 of 7
CVE-2018-8337P4MEDIUMCVSS 5.3vversion 1709 (Server Core Installation)2018-09-13
CVE-2018-8337 [MEDIUM] CWE-178 CVE-2018-8337: A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles c
A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles case sensitivity, aka "Windows Subsystem for Linux Security Feature Bypass Vulnerability." This affects Windows 10, Windows 10 Servers.
nvd
CVE-2018-1035P4MEDIUMCVSS 5.3vversion 1709 (Server Core Installation)2018-04-19
CVE-2018-1035 [MEDIUM] CVE-2018-1035: A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass De
A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka "Windows Security Feature Bypass Vulnerability." This affects Windows 10, Windows 10 Servers.
nvd
CVE-2018-8436P4MEDIUMCVSS 6.2vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-09-13
CVE-2018-8436 [MEDIUM] CWE-20 CVE-2018-8436: A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fail
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8437, CVE-2018-8438.
nvd
CVE-2018-0957P4MEDIUMCVSS 5.3vversion 1709 (Server Core Installation)2018-04-12
CVE-2018-0957 [MEDIUM] CWE-20 CVE-2018-0957: An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated user on a guest operating system, aka "Hyper-V Information Disclosure Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers.
nvd
CVE-2018-8201P4MEDIUMCVSS 4.5vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-06-14
CVE-2018-8201 [MEDIUM] CVE-2018-8201: A security feature bypass vulnerability exists in Device Guard that could allow an attacker to injec
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8211, CVE-2018-8212, CVE-20
nvd
CVE-2018-8309P4MEDIUMCVSS 5.5vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-07-11
CVE-2018-8309 [MEDIUM] CVE-2018-8309: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Win
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2018-8205P4MEDIUMCVSS 5.5vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-06-14
CVE-2018-8205 [MEDIUM] CVE-2018-8205: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Win
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2018-8341P4MEDIUMCVSS 4.7vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-08-15
CVE-2018-8341 [MEDIUM] CWE-200 CVE-2018-8341: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers. This CVE I
nvd
CVE-2018-8433P4MEDIUMCVSS 4.7vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-09-13
CVE-2018-8433 [MEDIUM] CWE-200 CVE-2018-8433: An information disclosure vulnerability exists when the Windows Graphics component improperly handle
An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory, aka "Microsoft Graphics Component Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008
nvd
CVE-2018-8116P4MEDIUMCVSS 5.5vversion 1709 (Server Core Installation)2018-04-12
CVE-2018-8116 [MEDIUM] CVE-2018-8116: A denial of service vulnerability exists in the way that Windows handles objects in memory, aka "Mic
A denial of service vulnerability exists in the way that Windows handles objects in memory, aka "Microsoft Graphics Component Denial of Service Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2018-8612P4MEDIUMCVSS 5.5vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-12-12
CVE-2018-8612 [MEDIUM] CWE-20 CVE-2018-8612: A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails
A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails to validate certain function values, aka "Connected User Experiences and Telemetry Service Denial of Service Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers.
nvd
CVE-2018-8121P4MEDIUMCVSS 4.7vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-06-14
CVE-2018-8121 [MEDIUM] CWE-665 CVE-2018-8121: An information disclosure vulnerability exists when the Windows kernel improperly initializes object
An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory, aka "Windows Kernel Information Disclosure Vulnerability." This affects Windows 10 Servers, Windows 10. This CVE ID is unique from CVE-2018-8207.
nvd
CVE-2018-8566P4MEDIUMCVSS 4.6vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-11-14
CVE-2018-8566 [MEDIUM] CVE-2018-8566: A security feature bypass vulnerability exists when Windows improperly suspends BitLocker Device Enc
A security feature bypass vulnerability exists when Windows improperly suspends BitLocker Device Encryption, aka "BitLocker Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers.
nvd
CVE-2018-8435P4MEDIUMCVSS 4.2vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-09-13
CVE-2018-8435 [MEDIUM] CWE-331 CVE-2018-8435: A security feature bypass vulnerability exists when Windows Hyper-V BIOS loader fails to provide a h
A security feature bypass vulnerability exists when Windows Hyper-V BIOS loader fails to provide a high-entropy source, aka "Windows Hyper-V Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.
nvd
CVE-2018-8481P4LOWCVSS 3.1vversion 1709 (Server Core Installation)vversion 1803 (Server Core Installation)2018-10-10
CVE-2018-8481 [LOW] CVE-2018-8481: An information disclosure vulnerability exists when Windows Media Player improperly discloses file i
An information disclosure vulnerability exists when Windows Media Player improperly discloses file information, aka "Windows Media Player Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Wi
nvd
← Previous7 / 7