Microsoft Windows Server 2008 vulnerabilities
3,037 known vulnerabilities affecting microsoft/windows_server_2008.
Total CVEs
3,037
CISA KEV
133
actively exploited
Public exploits
363
Exploited in wild
187
Severity breakdown
CRITICAL180HIGH1977MEDIUM841LOW39
Vulnerabilities
Page 97 of 152
CVE-2022-24530P3HIGHCVSS 7.8vr22022-04-15
CVE-2022-24530 [HIGH] CVE-2022-24530: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2022-30203P3HIGHCVSS 7.4vr22022-07-12
CVE-2022-30203 [HIGH] CWE-863 CVE-2022-30203: Windows Boot Manager Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
nvd
CVE-2022-37992P3HIGHCVSS 7.8vr22022-11-09
CVE-2022-37992 [HIGH] CVE-2022-37992: Windows Group Policy Elevation of Privilege Vulnerability
Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2021-34511P3HIGHCVSS 7.8vr22021-07-14
CVE-2021-34511 [HIGH] CWE-269 CVE-2021-34511: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2022-37986P3HIGHCVSS 7.8vr22022-10-11
CVE-2022-37986 [HIGH] CVE-2022-37986: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21680P3HIGHCVSS 7.8vr22023-01-10
CVE-2023-21680 [HIGH] CWE-416 CVE-2023-21680: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21765P3HIGHCVSS 7.8vr22023-01-10
CVE-2023-21765 [HIGH] CWE-190 CVE-2023-21765: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-38638P3HIGHCVSS 7.8vr22021-09-15
CVE-2021-38638 [HIGH] CWE-269 CVE-2021-38638: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2021-38628P3HIGHCVSS 7.8vr22021-09-15
CVE-2021-38628 [HIGH] CWE-269 CVE-2021-38628: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2023-21561P3HIGHCVSS 7.8vr22023-01-10
CVE-2023-21561 [HIGH] CWE-190 CVE-2023-21561: Microsoft Cryptographic Services Elevation of Privilege Vulnerability
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
nvd
CVE-2022-34706P3HIGHCVSS 7.8vr22022-08-09
CVE-2022-34706 [HIGH] CWE-269 CVE-2022-34706: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-24910P3HIGHCVSS 7.8vr22023-03-14
CVE-2023-24910 [HIGH] CWE-476 CVE-2023-24910: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2010-2742P3MEDIUMCVSS 5.4vr22010-12-16
CVE-2010-2742 [MEDIUM] CVE-2010-2742: The Netlogon RPC Service in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, and R2, whe
The Netlogon RPC Service in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, and R2, when the domain controller role is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and reboot) via a crafted RPC packet, aka "Netlogon RPC Null dereference DOS Vulnerability."
nvd
CVE-2022-41045P3HIGHCVSS 7.8vr22022-11-09
CVE-2022-41045 [HIGH] CWE-362 CVE-2022-41045: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2012-0006P3MEDIUMCVSS 5.0vr22012-03-13
CVE-2012-0006 [MEDIUM] CWE-399 CVE-2012-0006: The DNS server in Microsoft Windows Server 2003 SP2 and Server 2008 SP2, R2, and R2 SP1 does not pro
The DNS server in Microsoft Windows Server 2003 SP2 and Server 2008 SP2, R2, and R2 SP1 does not properly handle objects in memory during record lookup, which allows remote attackers to cause a denial of service (daemon restart) via a crafted query, aka "DNS Denial of Service Vulnerability."
nvd
CVE-2021-26896P3HIGHCVSS 7.5vr2vsp22021-03-11
CVE-2021-26896 [HIGH] CVE-2021-26896: Windows DNS Server Denial of Service Vulnerability
Windows DNS Server Denial of Service Vulnerability
nvd
CVE-2015-1676P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1676 [LOW] CWE-200 CVE-2015-1676: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vuln
nvd
CVE-2015-1679P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1679 [LOW] CVE-2015-1679: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerabilit
nvd
CVE-2015-1680P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1680 [LOW] CVE-2015-1680: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerabilit
nvd
CVE-2015-1678P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1678 [LOW] CVE-2015-1678: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerabilit
nvd