cbcvebase.

Microsoft Windows Server 2008 vulnerabilities

3,037 known vulnerabilities affecting microsoft/windows_server_2008.

Total CVEs
3,037
CISA KEV
133
actively exploited
Public exploits
363
Exploited in wild
187
Severity breakdown
CRITICAL180HIGH1977MEDIUM841LOW39

Vulnerabilities

Page 34 of 152
CVE-2021-43215P3CRITICALCVSS 9.8vr22021-12-15
CVE-2021-43215 [CRITICAL] CWE-787 CVE-2021-43215: iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution
nvd
CVE-2015-2511P3MEDIUMCVSS 6.9PoCvr22015-09-09
CVE-2015-2511 [MEDIUM] CWE-119 CVE-2015-2511: The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vuln
nvd
CVE-2015-2518P3MEDIUMCVSS 6.9PoCvr22015-09-09
CVE-2015-2518 [MEDIUM] CVE-2015-2518: The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerabilit
nvd
CVE-2015-2517P3MEDIUMCVSS 6.9PoCvr22015-09-09
CVE-2015-2517 [MEDIUM] CVE-2015-2517: The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerabilit
nvd
CVE-2019-1419P3HIGHCVSS 8.8vr22019-11-12
CVE-2019-1419 [HIGH] CVE-2019-1419: A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manage A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles specially crafted OpenType fonts, aka 'OpenType Font Parsing Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1456.
nvd
CVE-2025-54110P3HIGHCVSS 8.8vr22025-09-09
CVE-2025-54110 [HIGH] CWE-190 CVE-2025-54110: Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.
nvd
CVE-2010-0233P3HIGHCVSS 7.2PoCvsp22010-02-10
CVE-2010-0233 [HIGH] CVE-2010-0233: Double free vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 S Double free vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows local users to gain privileges via a crafted application, aka "Windows Kernel Double Free Vulnerability."
nvd
CVE-2021-1700P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1700 [HIGH] CVE-2021-1700: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1701P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1701 [HIGH] CVE-2021-1701: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1667P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1667 [HIGH] CVE-2021-1667: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1666P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1666 [HIGH] CVE-2021-1666: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1658P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1658 [HIGH] CVE-2021-1658: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1660P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1660 [HIGH] CVE-2021-1660: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1664P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1664 [HIGH] CVE-2021-1664: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1671P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1671 [HIGH] CVE-2021-1671: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1673P3HIGHCVSS 8.8vr22021-01-12
CVE-2021-1673 [HIGH] CVE-2021-1673: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2017-0245P3MEDIUMCVSS 4.7PoCvr22017-05-12
CVE-2017-0245 [MEDIUM] CWE-200 CVE-2017-0245: The kernel-mode drivers in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1 and Windows Server 2012 The kernel-mode drivers in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1 and Windows Server 2012 Gold allow a local authenticated attacker to execute a specially crafted application to obtain kernel information, aka "Win32k Information Disclosure Vulnerability."
nvd
CVE-2021-31194P3HIGHCVSS 8.8vr22021-05-11
CVE-2021-31194 [HIGH] CVE-2021-31194: OLE Automation Remote Code Execution Vulnerability OLE Automation Remote Code Execution Vulnerability
nvd
CVE-2025-21410P3HIGHCVSS 8.8vr22025-02-11
CVE-2025-21410 [HIGH] CWE-122 CVE-2025-21410: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2025-21208P3HIGHCVSS 8.8vr22025-02-11
CVE-2025-21208 [HIGH] CWE-122 CVE-2025-21208: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
Microsoft Windows Server 2008 vulnerabilities | cvebase