Microsoft Windows Server 2008 Service Pack 2 vulnerabilities
1,672 known vulnerabilities affecting microsoft/windows_server_2008_service_pack_2.
Total CVEs
1,672
CISA KEV
66
actively exploited
Public exploits
61
Exploited in wild
86
Severity breakdown
CRITICAL68HIGH1214MEDIUM387LOW3
Vulnerabilities
Page 51 of 84
CVE-2021-41333P3HIGHCVSS 7.8≥ 6.0.0, < 6.0.6003.213092021-12-15
CVE-2021-41333 [HIGH] CVE-2021-41333: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-17011P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-11-11
CVE-2020-17011 [HIGH] CVE-2020-17011: Windows Port Class Library Elevation of Privilege Vulnerability
Windows Port Class Library Elevation of Privilege Vulnerability
nvd
CVE-2021-1704P3HIGHCVSS 7.8≥ 6.0.0, < publication2021-01-12
CVE-2021-1704 [HIGH] CWE-269 CVE-2021-1704: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2020-17001P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-11-11
CVE-2020-17001 [HIGH] CVE-2020-17001: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-0648P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-09-11
CVE-2020-0648 [HIGH] CVE-2020-0648: <p>An elevation of privilege vulnerability exists when the Windows RSoP Service Application improper
An elevation of privilege vulnerability exists when the Windows RSoP Service Application improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how
nvd
CVE-2022-24499P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.214462022-04-15
CVE-2022-24499 [HIGH] CVE-2022-24499: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2021-34483P3HIGHCVSS 7.8≥ 6.0.0, < 6.0.6003.211922021-08-12
CVE-2021-34483 [HIGH] CWE-269 CVE-2021-34483: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-1559P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-09-11
CVE-2020-1559 [HIGH] CVE-2020-1559: <p>An elevation of privilege vulnerability exists when the Windows Storage Services improperly handl
An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.
The
nvd
CVE-2020-1489P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-08-17
CVE-2020-1489 [HIGH] CVE-2020-1489: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2022-21908P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.213492022-01-11
CVE-2022-21908 [HIGH] CVE-2022-21908: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2019-1162P3HIGHCVSS 7.8≥ 6.0.0, < publication2019-08-14
CVE-2019-1162 [HIGH] CWE-269 CVE-2019-1162: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).
An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then install programs; view, change, or delete data; or create new accounts with fu
nvd
CVE-2023-36907P3HIGHCVSS 7.5≥ 6.0.6003.0, < 6.0.6003.222162023-08-08
CVE-2023-36907 [HIGH] CWE-170 CVE-2023-36907: Windows Cryptographic Services Information Disclosure Vulnerability
Windows Cryptographic Services Information Disclosure Vulnerability
nvd
CVE-2021-1695P3HIGHCVSS 7.8≥ 6.0.0, < publication2021-01-12
CVE-2021-1695 [HIGH] CWE-269 CVE-2021-1695: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26798P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.214462022-04-15
CVE-2022-26798 [HIGH] CVE-2022-26798: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-26425P3HIGHCVSS 7.8≥ 6.0.0, < 6.0.6003.211922021-08-12
CVE-2021-26425 [HIGH] CWE-59 CVE-2021-26425: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-1640P3HIGHCVSS 7.8≥ 6.0.0, < publication2021-03-11
CVE-2021-1640 [HIGH] CWE-269 CVE-2021-1640: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-1661P3HIGHCVSS 7.8≥ 6.0.0, < publication2021-01-12
CVE-2021-1661 [HIGH] CWE-665 CVE-2021-1661: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2022-38005P3HIGHCVSS 7.8≥ 6.0.6003.0, < 6.0.6003.216662022-09-13
CVE-2022-38005 [HIGH] CVE-2022-38005: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-1537P3HIGHCVSS 7.8≥ 6.0.0, < publication2020-08-17
CVE-2020-1537 [HIGH] CVE-2020-1537: An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles fil
An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.
The s
nvd
CVE-2023-36913P3HIGHCVSS 7.5≥ 6.0.6003.0, < 6.0.6003.222162023-08-08
CVE-2023-36913 [HIGH] CWE-908 CVE-2023-36913: Microsoft Message Queuing Information Disclosure Vulnerability
Microsoft Message Queuing Information Disclosure Vulnerability
nvd