Microsoft Windows Server 2004 vulnerabilities

16 known vulnerabilities affecting microsoft/windows_server_2004.

Total CVEs
16
CISA KEV
16
actively exploited
Public exploits
2
Exploited in wild
16
Severity breakdown
CRITICAL1HIGH14MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2021-43226HIGHCVSS 7.8KEVfixed in 10.0.19041.14152021-12-15
CVE-2021-43226 [HIGH] CVE-2021-43226: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-41379HIGHCVSS 7.8KEVfixed in 10.0.19041.13482021-11-10
CVE-2021-41379 [MEDIUM] CWE-59 CVE-2021-41379: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2021-42278HIGHCVSS 7.5KEVfixed in 10.0.19041.13482021-11-10
CVE-2021-42278 [HIGH] CVE-2021-42278: Active Directory Domain Services Elevation of Privilege Vulnerability Active Directory Domain Services Elevation of Privilege Vulnerability
nvd
CVE-2021-40444HIGHCVSS 7.8KEVfixed in 10.0.19041.12372021-09-15
CVE-2021-40444 [HIGH] CWE-22 CVE-2021-40444: <p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affect Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using specially-crafted Microsoft Office documents. An attacker could craft a malicious ActiveX control to be used by a Microsoft Office document that
nvd
CVE-2021-36955HIGHCVSS 7.8KEVfixed in 10.0.19041.12372021-09-15
CVE-2021-36955 [HIGH] CVE-2021-36955: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-34484HIGHCVSS 7.8KEVPoCfixed in 10.0.19041.11652021-08-12
CVE-2021-34484 [HIGH] CVE-2021-34484: Windows User Profile Service Elevation of Privilege Vulnerability Windows User Profile Service Elevation of Privilege Vulnerability
nvd
CVE-2021-34486HIGHCVSS 7.8KEVfixed in 10.0.19041.11652021-08-12
CVE-2021-34486 [HIGH] CWE-416 CVE-2021-34486: Windows Event Tracing Elevation of Privilege Vulnerability Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-36948HIGHCVSS 7.8KEVfixed in 10.0.19041.11652021-08-12
CVE-2021-36948 [HIGH] CVE-2021-36948: Windows Update Medic Service Elevation of Privilege Vulnerability Windows Update Medic Service Elevation of Privilege Vulnerability
nvd
CVE-2021-33771HIGHCVSS 7.8KEVfixed in 10.0.19041.11102021-07-14
CVE-2021-33771 [HIGH] CVE-2021-33771: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-31979HIGHCVSS 7.8KEVfixed in 10.0.19041.11102021-07-14
CVE-2021-31979 [HIGH] CWE-119 CVE-2021-31979: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-1675HIGHCVSS 7.8KEVfixed in 10.0.19041.10522021-06-08
CVE-2021-1675 [HIGH] CVE-2021-1675: Windows Print Spooler Remote Code Execution Vulnerability Windows Print Spooler Remote Code Execution Vulnerability
nvd
CVE-2021-33739HIGHCVSS 7.8KEVfixed in 10.0.19041.10522021-06-08
CVE-2021-33739 [HIGH] CVE-2021-33739: Microsoft DWM Core Library Elevation of Privilege Vulnerability Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2021-31199HIGHCVSS 7.8KEVfixed in 10.0.19041.10522021-06-08
CVE-2021-31199 [MEDIUM] CVE-2021-31199: Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
nvd
CVE-2021-31201HIGHCVSS 7.8KEVfixed in 10.0.19041.10522021-06-08
CVE-2021-31201 [MEDIUM] CVE-2021-31201: Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
nvd
CVE-2021-31955MEDIUMCVSS 5.5KEVfixed in 10.0.19041.10522021-06-08
CVE-2021-31955 [MEDIUM] CWE-497 CVE-2021-31955: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2021-31166CRITICALCVSS 9.8KEVPoCfixed in 10.0.19041.9822021-05-11
CVE-2021-31166 [CRITICAL] CWE-416 CVE-2021-31166: HTTP Protocol Stack Remote Code Execution Vulnerability HTTP Protocol Stack Remote Code Execution Vulnerability
nvd