cbcvebase.

Microsoft Windows Server 2008 vulnerabilities

3,037 known vulnerabilities affecting microsoft/windows_server_2008.

Total CVEs
3,037
CISA KEV
133
actively exploited
Public exploits
363
Exploited in wild
187
Severity breakdown
CRITICAL180HIGH1977MEDIUM841LOW39

Vulnerabilities

Page 141 of 152
CVE-2019-0977P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-0977 [MEDIUM] CWE-200 CVE-2019-0977: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1048P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1048 [MEDIUM] CWE-200 CVE-2019-1048: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1015P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1015 [MEDIUM] CWE-200 CVE-2019-1015: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1011P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1011 [MEDIUM] CWE-200 CVE-2019-1011: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1016P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1016 [MEDIUM] CWE-200 CVE-2019-1016: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1012P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1012 [MEDIUM] CWE-200 CVE-2019-1012: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1046P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1046 [MEDIUM] CWE-200 CVE-2019-1046: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1049P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1049 [MEDIUM] CWE-200 CVE-2019-1049: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2019-1047P4MEDIUMCVSS 4.7vr22019-06-12
CVE-2019-1047 [MEDIUM] CWE-200 CVE-2019-1047: An information disclosure vulnerability exists when the Windows GDI component improperly discloses t An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to op
nvd
CVE-2011-1264P4MEDIUMCVSS 4.3vr22011-06-16
CVE-2011-1264 [MEDIUM] CWE-79 CVE-2011-1264: Cross-site scripting (XSS) vulnerability in Active Directory Certificate Services Web Enrollment in Cross-site scripting (XSS) vulnerability in Active Directory Certificate Services Web Enrollment in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, R2, and R2 SP1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka "Active Directory Certificate Services Vulnerability."
nvd
CVE-2019-0848P4MEDIUMCVSS 5.5vr22019-04-09
CVE-2019-0848 [MEDIUM] CVE-2019-0848: An information disclosure vulnerability exists when the win32k component improperly provides kernel An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0814.
nvd
CVE-2019-0844P4MEDIUMCVSS 5.5vr22019-04-09
CVE-2019-0844 [MEDIUM] CVE-2019-0844: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0840.
nvd
CVE-2021-1699P4MEDIUMCVSS 5.5vr22021-01-12
CVE-2021-1699 [MEDIUM] CVE-2021-1699: Windows (modem.sys) Information Disclosure Vulnerability Windows (modem.sys) Information Disclosure Vulnerability
nvd
CVE-2019-0621P4MEDIUMCVSS 5.5vr22019-03-05
CVE-2019-0621 [MEDIUM] CVE-2019-0621: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0661, CVE-2019-0663.
nvd
CVE-2019-0661P4MEDIUMCVSS 5.5vr22019-03-05
CVE-2019-0661 [MEDIUM] CVE-2019-0661: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0621, CVE-2019-0663.
nvd
CVE-2022-41116P4MEDIUMCVSS 5.9vr22022-11-09
CVE-2022-41116 [MEDIUM] CWE-362 CVE-2022-41116: Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
nvd
CVE-2022-41090P4MEDIUMCVSS 5.9vr22022-11-09
CVE-2022-41090 [MEDIUM] CWE-362 CVE-2022-41090: Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
nvd
CVE-2019-0759P4MEDIUMCVSS 5.5vr22019-04-09
CVE-2019-0759 [MEDIUM] CVE-2019-0759: An information disclosure vulnerability exists when the Windows Print Spooler does not properly hand An information disclosure vulnerability exists when the Windows Print Spooler does not properly handle objects in memory, aka 'Windows Print Spooler Information Disclosure Vulnerability'.
nvd
CVE-2019-1216P4MEDIUMCVSS 5.5vr22019-09-11
CVE-2019-1216 [MEDIUM] CWE-200 CVE-2019-1216: An information disclosure vulnerability exists when DirectX improperly handles objects in memory, ak An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Information Disclosure Vulnerability'.
nvd
CVE-2020-0987P4MEDIUMCVSS 5.5vr22020-04-15
CVE-2020-0987 [MEDIUM] CVE-2020-0987: An information disclosure vulnerability exists when the Microsoft Windows Graphics Component imprope An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0982, CVE-2020-1005.
nvd
Microsoft Windows Server 2008 vulnerabilities | cvebase