cbcvebase.

Microsoft Windows Server vulnerabilities

670 known vulnerabilities affecting microsoft/windows_server.

Total CVEs
670
CISA KEV
22
actively exploited
Public exploits
37
Exploited in wild
34
Severity breakdown
CRITICAL26HIGH432MEDIUM208LOW4

Vulnerabilities

Page 24 of 34
CVE-2020-1468P4MEDIUMCVSS 6.5v2019v2019 (Core installation)+12 more2020-07-14
CVE-2020-1468 [MEDIUM] CVE-2020-1468: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
nvd
CVE-2020-1283P4MEDIUMCVSS 6.5vversion 1803 (Core Installation)v2019+3 more2020-06-09
CVE-2020-1283 [MEDIUM] CVE-2020-1283: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Win A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.
nvd
CVE-2022-21865P4HIGHCVSS 7.0v20h2v20222022-01-11
CVE-2022-21865 [HIGH] CVE-2022-21865: Connected Devices Platform Service Elevation of Privilege Vulnerability Connected Devices Platform Service Elevation of Privilege Vulnerability
nvd
CVE-2022-21862P4HIGHCVSS 7.0v20h2v20222022-01-11
CVE-2022-21862 [HIGH] CVE-2022-21862: Windows Application Model Core API Elevation of Privilege Vulnerability Windows Application Model Core API Elevation of Privilege Vulnerability
nvd
CVE-2019-1465P4MEDIUMCVSS 6.5vversion 1803 (Core Installation)v2019+15 more2019-12-10
CVE-2019-1465 [MEDIUM] CWE-125 CVE-2019-1465: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1466, CVE-2019-1467.
nvd
CVE-2020-0774P4MEDIUMCVSS 6.5vversion 1803 (Core Installation)v2019+15 more2020-03-12
CVE-2020-0774 [MEDIUM] CVE-2020-0774: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0874, CVE-2020-0879, CVE-2020-0880, CVE-2020-0882.
nvd
CVE-2020-0993P4MEDIUMCVSS 6.5vversion 1803 (Core Installation)v2019+10 more2020-04-15
CVE-2020-0993 [MEDIUM] CVE-2020-0993: A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, ak A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, aka 'Windows DNS Denial of Service Vulnerability'.
nvd
CVE-2022-24460P4HIGHCVSS 7.0v20h2v20222022-03-09
CVE-2022-24460 [HIGH] CVE-2022-24460: Tablet Windows User Interface Application Elevation of Privilege Vulnerability Tablet Windows User Interface Application Elevation of Privilege Vulnerability
nvd
CVE-2019-1338P4MEDIUMCVSS 5.9v2008 R2 for x64-based Systems Service Pack 1 (Core installation)v2008 R2 for Itanium-Based Systems Service Pack 1+6 more2019-10-10
CVE-2019-1338 [MEDIUM] CVE-2019-1338: A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacke A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLMv2 protection if a client is also sending LMv2 responses, aka 'Windows NTLM Security Feature Bypass Vulnerability'.
nvd
CVE-2022-22717P4HIGHCVSS 7.0v20h2v20222022-02-09
CVE-2022-22717 [HIGH] CVE-2022-22717: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26938P4HIGHCVSS 7.0v20222022-05-10
CVE-2022-26938 [HIGH] CVE-2022-26938: Storage Spaces Direct Elevation of Privilege Vulnerability Storage Spaces Direct Elevation of Privilege Vulnerability
nvd
CVE-2022-21868P4HIGHCVSS 7.0v20h2v20222022-01-11
CVE-2022-21868 [HIGH] CVE-2022-21868: Windows Devices Human Interface Elevation of Privilege Vulnerability Windows Devices Human Interface Elevation of Privilege Vulnerability
nvd
CVE-2022-29126P4HIGHCVSS 7.0v20h22022-05-10
CVE-2022-29126 [HIGH] CVE-2022-29126: Tablet Windows User Interface Application Core Elevation of Privilege Vulnerability Tablet Windows User Interface Application Core Elevation of Privilege Vulnerability
nvd
CVE-2022-21859P4HIGHCVSS 7.0v20h2v20222022-01-11
CVE-2022-21859 [HIGH] CVE-2022-21859: Windows Accounts Control Elevation of Privilege Vulnerability Windows Accounts Control Elevation of Privilege Vulnerability
nvd
CVE-2022-29138P4HIGHCVSS 7.0v20h22022-05-10
CVE-2022-29138 [HIGH] CVE-2022-29138: Windows Clustered Shared Volume Elevation of Privilege Vulnerability Windows Clustered Shared Volume Elevation of Privilege Vulnerability
nvd
CVE-2022-21866P4HIGHCVSS 7.0v20h2v20222022-01-11
CVE-2022-21866 [HIGH] CVE-2022-21866: Windows System Launcher Elevation of Privilege Vulnerability Windows System Launcher Elevation of Privilege Vulnerability
nvd
CVE-2022-22016P4HIGHCVSS 7.0v20h2v20222022-05-10
CVE-2022-22016 [HIGH] CVE-2022-22016: Windows PlayToManager Elevation of Privilege Vulnerability Windows PlayToManager Elevation of Privilege Vulnerability
nvd
CVE-2022-26939P4HIGHCVSS 7.0v20h22022-05-10
CVE-2022-26939 [HIGH] CVE-2022-26939: Storage Spaces Direct Elevation of Privilege Vulnerability Storage Spaces Direct Elevation of Privilege Vulnerability
nvd
CVE-2022-21924P4MEDIUMCVSS 5.3v20h2v20222022-01-11
CVE-2022-21924 [MEDIUM] CVE-2022-21924: Workstation Service Remote Protocol Security Feature Bypass Vulnerability Workstation Service Remote Protocol Security Feature Bypass Vulnerability
nvd
CVE-2022-29112P4MEDIUMCVSS 6.5v20222022-05-10
CVE-2022-29112 [MEDIUM] CVE-2022-29112: Windows Graphics Component Information Disclosure Vulnerability Windows Graphics Component Information Disclosure Vulnerability
nvd
Microsoft Windows Server vulnerabilities | cvebase