Microsoft Windows Server 2016 vulnerabilities

4,167 known vulnerabilities affecting microsoft/windows_server_2016.

Total CVEs
4,167
CISA KEV
114
actively exploited
Public exploits
129
Exploited in wild
107
Severity breakdown
CRITICAL114HIGH2916MEDIUM1118LOW19

Vulnerabilities

Page 117 of 209
CVE-2021-43244MEDIUMCVSS 5.5v20042021-12-15
CVE-2021-43244 [MEDIUM] CVE-2021-43244: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2021-43235MEDIUMCVSS 5.5v2004≥ 10.0.0, < 10.0.14393.48252021-12-15
CVE-2021-43235 [MEDIUM] CVE-2021-43235: Storage Spaces Controller Information Disclosure Vulnerability Storage Spaces Controller Information Disclosure Vulnerability
nvd
CVE-2021-43224MEDIUMCVSS 5.5v2004≥ 10.0.0, < 10.0.14393.48252021-12-15
CVE-2021-43224 [MEDIUM] CVE-2021-43224: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2021-43216MEDIUMCVSS 6.5v2004≥ 10.0.0, < 10.0.14393.48252021-12-15
CVE-2021-43216 [MEDIUM] CWE-668 CVE-2021-43216: Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
nvd
CVE-2021-43227MEDIUMCVSS 5.5v2004≥ 10.0.0, < 10.0.14393.48252021-12-15
CVE-2021-43227 [MEDIUM] CVE-2021-43227: Storage Spaces Controller Information Disclosure Vulnerability Storage Spaces Controller Information Disclosure Vulnerability
nvd
CVE-2021-26443CRITICALCVSS 9.0v20h2v20042021-11-10
CVE-2021-26443 [CRITICAL] CVE-2021-26443: Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability
nvd
CVE-2021-42291HIGHCVSS 8.8v2004≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-42291 [HIGH] CWE-269 CVE-2021-42291: Active Directory Domain Services Elevation of Privilege Vulnerability Active Directory Domain Services Elevation of Privilege Vulnerability
nvd
CVE-2021-41377HIGHCVSS 7.8v20h2v2004+1 more2021-11-10
CVE-2021-41377 [HIGH] CWE-269 CVE-2021-41377: Windows Fast FAT File System Driver Elevation of Privilege Vulnerability Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-41367HIGHCVSS 7.8≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-41367 [HIGH] NTFS Elevation of Privilege Vulnerability NTFS Elevation of Privilege Vulnerability NTFS Elevation of Privilege Vulnerability
cvelistv5
CVE-2021-42285HIGHCVSS 7.8v2004≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-42285 [HIGH] CWE-269 CVE-2021-42285: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-36957HIGHCVSS 7.8v20h2v2004+1 more2021-11-10
CVE-2021-36957 [HIGH] CWE-269 CVE-2021-36957: Windows Desktop Bridge Elevation of Privilege Vulnerability Windows Desktop Bridge Elevation of Privilege Vulnerability
nvd
CVE-2021-41356HIGHCVSS 7.5≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-41356 [HIGH] Windows Denial of Service Vulnerability Windows Denial of Service Vulnerability Windows Denial of Service Vulnerability
cvelistv5
CVE-2021-42283HIGHCVSS 8.8≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-42283 [HIGH] NTFS Elevation of Privilege Vulnerability NTFS Elevation of Privilege Vulnerability NTFS Elevation of Privilege Vulnerability
cvelistv5
CVE-2021-41379HIGHCVSS 7.8KEVfixed in 10.0.14393.4770≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-41379 [HIGH] CWE-59 CVE-2021-41379: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2021-42286HIGHCVSS 7.8v20042021-11-10
CVE-2021-42286 [HIGH] CWE-269 CVE-2021-42286: Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege Vulnerabi Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege Vulnerability
nvd
CVE-2021-41366HIGHCVSS 7.8v20h2v2004+1 more2021-11-10
CVE-2021-41366 [HIGH] CWE-269 CVE-2021-41366: Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
nvd
CVE-2021-42287HIGHCVSS 8.8KEVfixed in 10.0.14393.4770v2004+1 more2021-11-10
CVE-2021-42287 [HIGH] CVE-2021-42287: Active Directory Domain Services Elevation of Privilege Vulnerability Active Directory Domain Services Elevation of Privilege Vulnerability
nvd
CVE-2021-41370HIGHCVSS 7.8≥ 10.0.0, < 10.0.14393.47702021-11-10
CVE-2021-41370 [HIGH] NTFS Elevation of Privilege Vulnerability NTFS Elevation of Privilege Vulnerability NTFS Elevation of Privilege Vulnerability
cvelistv5
CVE-2021-42276HIGHCVSS 7.8v20h2v2004+1 more2021-11-10
CVE-2021-42276 [HIGH] CVE-2021-42276: Microsoft Windows Media Foundation Remote Code Execution Vulnerability Microsoft Windows Media Foundation Remote Code Execution Vulnerability
nvd
CVE-2021-42277HIGHCVSS 7.8v20h2v2004+1 more2021-11-10
CVE-2021-42277 [HIGH] CWE-269 CVE-2021-42277: Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
nvd