Microsoft Windows Server 2008 Service Pack 2 vulnerabilities

1,672 known vulnerabilities affecting microsoft/windows_server_2008_service_pack_2.

Total CVEs
1,672
CISA KEV
66
actively exploited
Public exploits
37
Exploited in wild
58
Severity breakdown
CRITICAL68HIGH1214MEDIUM387LOW3

Vulnerabilities

Page 34 of 84
CVE-2023-36006HIGHCVSS 8.8≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-36006 [HIGH] CWE-121 CVE-2023-36006: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2023-35639HIGHCVSS 8.8≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-35639 [HIGH] CWE-122 CVE-2023-35639: Microsoft ODBC Driver Remote Code Execution Vulnerability Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2023-36005HIGHCVSS 8.1≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-36005 [HIGH] CWE-591 CVE-2023-36005: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2023-35633HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-35633 [HIGH] CWE-59 CVE-2023-35633: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-36004HIGHCVSS 7.5≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-36004 [HIGH] CWE-287 CVE-2023-36004: Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability
nvd
CVE-2023-35622HIGHCVSS 7.5≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-35622 [HIGH] Windows DNS Spoofing Vulnerability Windows DNS Spoofing Vulnerability Windows DNS Spoofing Vulnerability
cvelistv5
CVE-2023-36012MEDIUMCVSS 5.3≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-36012 [MEDIUM] CWE-908 CVE-2023-36012: DHCP Server Service Information Disclosure Vulnerability DHCP Server Service Information Disclosure Vulnerability
nvd
CVE-2023-35629MEDIUMCVSS 6.8≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-35629 [MEDIUM] CWE-125 CVE-2023-35629: Microsoft USBHUB 3.0 Device Driver Remote Code Execution Vulnerability Microsoft USBHUB 3.0 Device Driver Remote Code Execution Vulnerability
nvd
CVE-2023-35642MEDIUMCVSS 6.5≥ 6.0.6003.0, < 6.0.6003.224132023-12-12
CVE-2023-35642 [MEDIUM] CWE-682 CVE-2023-35642: Internet Connection Sharing (ICS) Denial of Service Vulnerability Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2023-36397CRITICALCVSS 9.8≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36397 [CRITICAL] CWE-126 CVE-2023-36397: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-36401HIGHCVSS 7.2≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36401 [HIGH] CWE-190 CVE-2023-36401: Microsoft Remote Registry Service Remote Code Execution Vulnerability Microsoft Remote Registry Service Remote Code Execution Vulnerability
nvd
CVE-2023-36705HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36705 [HIGH] CWE-59 CVE-2023-36705: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2023-36025HIGHCVSS 8.8KEV≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36025 [HIGH] CVE-2023-36025: Windows SmartScreen Security Feature Bypass Vulnerability Windows SmartScreen Security Feature Bypass Vulnerability
nvd
CVE-2023-36395HIGHCVSS 7.5≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36395 [HIGH] CWE-190 CVE-2023-36395: Windows Deployment Services Denial of Service Vulnerability Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2023-36393HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36393 [HIGH] CWE-426 CVE-2023-36393: Windows User Interface Application Core Remote Code Execution Vulnerability Windows User Interface Application Core Remote Code Execution Vulnerability
nvd
CVE-2023-36719HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36719 [HIGH] CWE-20 CVE-2023-36719: Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability
nvd
CVE-2023-36403HIGHCVSS 7.0≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36403 [HIGH] CWE-591 CVE-2023-36403: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-36425HIGHCVSS 8.0≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36425 [HIGH] CWE-122 CVE-2023-36425: Windows Distributed File System (DFS) Remote Code Execution Vulnerability Windows Distributed File System (DFS) Remote Code Execution Vulnerability
nvd
CVE-2023-36036HIGHCVSS 7.8KEV≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36036 [HIGH] CWE-122 CVE-2023-36036: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36423HIGHCVSS 8.8≥ 6.0.6003.0, < 6.0.6003.223672023-11-14
CVE-2023-36423 [HIGH] CWE-122 CVE-2023-36423: Microsoft Remote Registry Service Remote Code Execution Vulnerability Microsoft Remote Registry Service Remote Code Execution Vulnerability
nvd