Microsoft Windows Server 2008 Service Pack 2 vulnerabilities
1,672 known vulnerabilities affecting microsoft/windows_server_2008_service_pack_2.
Total CVEs
1,672
CISA KEV
66
actively exploited
Public exploits
61
Exploited in wild
86
Severity breakdown
CRITICAL68HIGH1214MEDIUM387LOW3
Vulnerabilities
Page 44 of 84
CVE-2020-1598P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-09-11
CVE-2020-1598 [HIGH] CVE-2020-1598: <p>An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) se
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full us
nvd
CVE-2021-26887P3HIGHCVSS 7.8vN/A2021-03-11
CVE-2021-26887 [HIGH] CWE-59 CVE-2021-26887: <p>An elevation of privilege vulnerability exists in Microsoft Windows when Folder redirection has b
An elevation of privilege vulnerability exists in Microsoft Windows when Folder redirection has been enabled via Group Policy. When folder redirection file server is co-located with Terminal server, an attacker who successfully exploited the vulnerability would be able to begin redirecting another user's personal data to a created folder.
To exploit th
nvd
CVE-2020-1529P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-08-17
CVE-2020-1529 [HIGH] CVE-2020-1529: An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface
An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
To exploit th
nvd
CVE-2024-30073P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.228702024-09-10
CVE-2024-30073 [HIGH] CWE-41 CVE-2024-30073: Windows Security Zone Mapping Security Feature Bypass Vulnerability
Windows Security Zone Mapping Security Feature Bypass Vulnerability
nvd
CVE-2021-43238P3HIGHCVSS 7.8≥ 6.0.0, < 6.0.6003.213092021-12-15
CVE-2021-43238 [HIGH] CWE-59 CVE-2021-43238: Windows Remote Access Elevation of Privilege Vulnerability
Windows Remote Access Elevation of Privilege Vulnerability
nvd
CVE-2021-38633P3HIGHCVSS 7.8≥ 6.0.0, < 6.0.6003.212182021-09-15
CVE-2021-38633 [HIGH] CWE-269 CVE-2021-38633: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-38066P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.227692024-07-09
CVE-2024-38066 [HIGH] CWE-416 CVE-2024-38066: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21747P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21747 [HIGH] CWE-416 CVE-2023-21747: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2020-1245P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-09-11
CVE-2020-1245 [HIGH] CVE-2020-1245: <p>An elevation of privilege vulnerability exists in Windows when the Win32k component fails to prop
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
To exploit this vul
nvd
CVE-2023-21675P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21675 [HIGH] CWE-843 CVE-2023-21675: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-21748P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21748 [HIGH] CVE-2023-21748: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-21749P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21749 [HIGH] CWE-20 CVE-2023-21749: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-21373P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.231172025-02-11
CVE-2025-21373 [HIGH] CWE-59 CVE-2025-21373: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2025-27741P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.232202025-04-08
CVE-2025-27741 [HIGH] CWE-125 CVE-2025-27741: Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2023-23420P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.219662023-03-14
CVE-2023-23420 [HIGH] CWE-416 CVE-2023-23420: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21436P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.225672024-03-12
CVE-2024-21436 [HIGH] CWE-284 CVE-2024-21436: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2023-21774P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21774 [HIGH] CWE-416 CVE-2023-21774: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-21772P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21772 [HIGH] CWE-125 CVE-2023-21772: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-22043P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.215692022-07-12
CVE-2022-22043 [HIGH] CVE-2022-22043: Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-21773P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.218722023-01-10
CVE-2023-21773 [HIGH] CWE-416 CVE-2023-21773: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd