Microsoft Windows Server 2016 vulnerabilities
4,167 known vulnerabilities affecting microsoft/windows_server_2016.
Total CVEs
4,167
CISA KEV
114
actively exploited
Public exploits
129
Exploited in wild
107
Severity breakdown
CRITICAL114HIGH2916MEDIUM1118LOW19
Vulnerabilities
Page 120 of 209
CVE-2021-41334HIGHCVSS 7.8v20h2v20042021-10-13
CVE-2021-41334 [HIGH] CWE-269 CVE-2021-41334: Windows Desktop Bridge Elevation of Privilege Vulnerability
Windows Desktop Bridge Elevation of Privilege Vulnerability
nvd
CVE-2021-41337MEDIUMCVSS 4.9v20h2v2004+1 more2021-10-13
CVE-2021-41337 [MEDIUM] CVE-2021-41337: Active Directory Security Feature Bypass Vulnerability
Active Directory Security Feature Bypass Vulnerability
nvd
CVE-2021-40468MEDIUMCVSS 5.5v20h2v20042021-10-13
CVE-2021-40468 [MEDIUM] CVE-2021-40468: Windows Bind Filter Driver Information Disclosure Vulnerability
Windows Bind Filter Driver Information Disclosure Vulnerability
nvd
CVE-2021-40455MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.14393.47042021-10-13
CVE-2021-40455 [MEDIUM] Windows Installer Spoofing Vulnerability
Windows Installer Spoofing Vulnerability
Windows Installer Spoofing Vulnerability
cvelistv5
CVE-2021-40475MEDIUMCVSS 5.5v20h2v20042021-10-13
CVE-2021-40475 [MEDIUM] CVE-2021-40475: Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
nvd
CVE-2021-41343MEDIUMCVSS 5.5v20h2v2004+1 more2021-10-13
CVE-2021-41343 [MEDIUM] CVE-2021-41343: Windows Fast FAT File System Driver Information Disclosure Vulnerability
Windows Fast FAT File System Driver Information Disclosure Vulnerability
nvd
CVE-2021-40463MEDIUMCVSS 6.5v20h2v2004+1 more2021-10-13
CVE-2021-40463 [MEDIUM] CVE-2021-40463: Windows Network Address Translation (NAT) Denial of Service Vulnerability
Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2021-41332MEDIUMCVSS 6.5v20h2v2004+1 more2021-10-13
CVE-2021-41332 [MEDIUM] CVE-2021-41332: Windows Print Spooler Information Disclosure Vulnerability
Windows Print Spooler Information Disclosure Vulnerability
nvd
CVE-2021-40460MEDIUMCVSS 6.5v2004≥ 10.0.0, < 10.0.14393.47042021-10-13
CVE-2021-40460 [MEDIUM] CVE-2021-40460: Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability
Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability
nvd
CVE-2021-38663MEDIUMCVSS 5.5v2004≥ 10.0.0, < 10.0.14393.47042021-10-13
CVE-2021-38663 [MEDIUM] CVE-2021-38663: Windows exFAT File System Information Disclosure Vulnerability
Windows exFAT File System Information Disclosure Vulnerability
nvd
CVE-2021-40454MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.14393.47042021-10-13
CVE-2021-40454 [MEDIUM] CWE-312 CVE-2021-40454: Rich Text Edit Control Information Disclosure Vulnerability
Rich Text Edit Control Information Disclosure Vulnerability
nvd
CVE-2021-41338MEDIUMCVSS 5.5v20h2v2004+1 more2021-10-13
CVE-2021-41338 [MEDIUM] CVE-2021-41338: Windows AppContainer Firewall Rules Security Feature Bypass Vulnerability
Windows AppContainer Firewall Rules Security Feature Bypass Vulnerability
nvd
CVE-2021-38662MEDIUMCVSS 5.5v2004≥ 10.0.0, < 10.0.14393.47042021-10-13
CVE-2021-38662 [MEDIUM] CVE-2021-38662: Windows Fast FAT File System Driver Information Disclosure Vulnerability
Windows Fast FAT File System Driver Information Disclosure Vulnerability
nvd
CVE-2021-41361LOWCVSS 3.5v20h2v2004+1 more2021-10-13
CVE-2021-41361 [LOW] CVE-2021-41361: Active Directory Federation Server Spoofing Vulnerability
Active Directory Federation Server Spoofing Vulnerability
nvd
CVE-2021-36965CRITICALCVSS 9.8v20h2v2004+1 more2021-09-15
CVE-2021-36965 [CRITICAL] CVE-2021-36965: Windows WLAN AutoConfig Service Remote Code Execution Vulnerability
Windows WLAN AutoConfig Service Remote Code Execution Vulnerability
nvd
CVE-2021-40444HIGHCVSS 7.8KEVPoCfixed in 10.0.14393.4651≥ 10.0.0, < 10.0.14393.46512021-09-15
CVE-2021-40444 [HIGH] CWE-22 CVE-2021-40444: <p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affect
Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using specially-crafted Microsoft Office documents.
An attacker could craft a malicious ActiveX control to be used by a Microsoft Office document that
nvd
CVE-2021-38634HIGHCVSS 7.8v20h2v2004+1 more2021-09-15
CVE-2021-38634 [HIGH] CWE-269 CVE-2021-38634: Microsoft Windows Update Client Elevation of Privilege Vulnerability
Microsoft Windows Update Client Elevation of Privilege Vulnerability
nvd
CVE-2021-26435HIGHCVSS 7.8v20h2v2004+1 more2021-09-15
CVE-2021-26435 [HIGH] CWE-787 CVE-2021-26435: Windows Scripting Engine Memory Corruption Vulnerability
Windows Scripting Engine Memory Corruption Vulnerability
nvd
CVE-2021-38638HIGHCVSS 7.8v20h2v2004+1 more2021-09-15
CVE-2021-38638 [HIGH] CWE-269 CVE-2021-38638: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2021-36973HIGHCVSS 7.8v20h2v2004+1 more2021-09-15
CVE-2021-36973 [HIGH] CWE-269 CVE-2021-36973: Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability
Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability
nvd