Microsoft Windows Server 2008 vulnerabilities
3,037 known vulnerabilities affecting microsoft/windows_server_2008.
Total CVEs
3,037
CISA KEV
133
actively exploited
Public exploits
363
Exploited in wild
187
Severity breakdown
CRITICAL180HIGH1977MEDIUM841LOW39
Vulnerabilities
Page 93 of 152
CVE-2019-1268P3HIGHCVSS 7.8vr22019-09-11
CVE-2019-1268 [HIGH] CVE-2019-1268: An elevation of privilege exists when Winlogon does not properly handle file path information, aka '
An elevation of privilege exists when Winlogon does not properly handle file path information, aka 'Winlogon Elevation of Privilege Vulnerability'.
nvd
CVE-2021-1704P3HIGHCVSS 7.8vr22021-01-12
CVE-2021-1704 [HIGH] CWE-269 CVE-2021-1704: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2020-17001P3HIGHCVSS 7.8vr22020-11-11
CVE-2020-17001 [HIGH] CVE-2020-17001: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2019-1319P3HIGHCVSS 7.8vr22019-10-10
CVE-2019-1319 [HIGH] CVE-2019-1319: An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.
nvd
CVE-2022-24499P3HIGHCVSS 7.8vr22022-04-15
CVE-2022-24499 [HIGH] CVE-2022-24499: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-0769P3HIGHCVSS 7.8vr22020-03-12
CVE-2020-0769 [HIGH] CVE-2020-0769: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows CSC Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0771.
nvd
CVE-2021-34483P3HIGHCVSS 7.8vr22021-08-12
CVE-2021-34483 [HIGH] CWE-269 CVE-2021-34483: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-34537P3HIGHCVSS 8.0vr22021-08-12
CVE-2021-34537 [HIGH] CWE-269 CVE-2021-34537: Windows Bluetooth Driver Elevation of Privilege Vulnerability
Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2020-16976P3HIGHCVSS 7.8vr22020-10-16
CVE-2020-16976 [HIGH] CVE-2020-16976: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-0678P3HIGHCVSS 7.8vr22020-02-11
CVE-2020-0678 [HIGH] CVE-2020-0678: An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handl
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1513P3HIGHCVSS 7.8vr22020-08-17
CVE-2020-1513 [HIGH] CVE-2020-1513: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1516P3HIGHCVSS 7.8vr22020-08-17
CVE-2020-1516 [HIGH] CVE-2020-1516: An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly hand
An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the
nvd
CVE-2020-1489P3HIGHCVSS 7.8vr22020-08-17
CVE-2020-1489 [HIGH] CVE-2020-1489: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2022-21908P3HIGHCVSS 7.8vr22022-01-11
CVE-2022-21908 [HIGH] CVE-2022-21908: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-16975P3HIGHCVSS 7.8vr22020-10-16
CVE-2020-16975 [HIGH] CVE-2020-16975: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16912P3HIGHCVSS 7.8vr22020-10-16
CVE-2020-16912 [HIGH] CVE-2020-16912: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16974P3HIGHCVSS 7.8vr22020-10-16
CVE-2020-16974 [HIGH] CVE-2020-16974: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16972P3HIGHCVSS 7.8vr22020-10-16
CVE-2020-16972 [HIGH] CVE-2020-16972: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2019-1162P3HIGHCVSS 7.8vr22019-08-14
CVE-2019-1162 [HIGH] CWE-269 CVE-2019-1162: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).
An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then install programs; view, change, or delete data; or create new accounts with fu
nvd
CVE-2023-36907P3HIGHCVSS 7.5vr22023-08-08
CVE-2023-36907 [HIGH] CWE-170 CVE-2023-36907: Windows Cryptographic Services Information Disclosure Vulnerability
Windows Cryptographic Services Information Disclosure Vulnerability
nvd