cbcvebase.

Microsoft Windows Server 2016 vulnerabilities

4,536 known vulnerabilities affecting microsoft/windows_server_2016.

Total CVEs
4,536
CISA KEV
116
actively exploited
Public exploits
172
Exploited in wild
176
Severity breakdown
CRITICAL135HIGH3181MEDIUM1198LOW22

Vulnerabilities

Page 121 of 227
CVE-2020-1336P3HIGHCVSS 7.8v1903v1909+1 more2020-07-14
CVE-2020-1336 [HIGH] CVE-2020-1336: An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addresses the vulnerabili
nvd
CVE-2020-0757P3HIGHCVSS 7.8v1903v19092020-02-11
CVE-2020-0757 [HIGH] CVE-2020-0757: An elevation of privilege vulnerability exists when Windows improperly handles Secure Socket Shell r An elevation of privilege vulnerability exists when Windows improperly handles Secure Socket Shell remote commands, aka 'Windows SSH Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0678P3HIGHCVSS 7.8v1803v1903+1 more2020-02-11
CVE-2020-0678 [HIGH] CVE-2020-0678: An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handl An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'.
nvd
CVE-2023-36712P3HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.63512023-10-10
CVE-2023-36712 [HIGH] CVE-2023-36712: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2020-1513P3HIGHCVSS 7.8v1903v1909+2 more2020-08-17
CVE-2020-1513 [HIGH] CVE-2020-1513: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1533P3HIGHCVSS 7.8v1903v1909+2 more2020-08-17
CVE-2020-1533 [HIGH] CVE-2020-1533: An elevation of privilege vulnerability exists in the way that the Windows WalletService handles obj An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addresses the vuln
nvd
CVE-2020-1516P3HIGHCVSS 7.8v1903v1909+2 more2020-08-17
CVE-2020-1516 [HIGH] CVE-2020-1516: An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly hand An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the
nvd
CVE-2020-1489P3HIGHCVSS 7.8v1903v1909+2 more2020-08-17
CVE-2020-1489 [HIGH] CVE-2020-1489: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-16892P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16892 [HIGH] CVE-2020-16892: <p>An elevation of privilege vulnerability exists in the way that the Windows kernel image handles o An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addresses the vul
nvd
CVE-2022-21908P3HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21908 [HIGH] CVE-2022-21908: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-16975P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16975 [HIGH] CVE-2020-16975: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16912P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16912 [HIGH] CVE-2020-16912: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16974P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16974 [HIGH] CVE-2020-16974: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16972P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16972 [HIGH] CVE-2020-16972: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-1429P3HIGHCVSS 7.8v1903v1909+1 more2020-07-14
CVE-2020-1429 [HIGH] CVE-2020-1429: An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handl An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'.
nvd
CVE-2020-16936P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16936 [HIGH] CVE-2020-16936: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16980P3HIGHCVSS 7.8v1903v1909+2 more2020-10-16
CVE-2020-16980 [HIGH] CVE-2020-16980: <p>An elevation of privilege vulnerability exists when the Windows iSCSI Target Service improperly h An elevation of privilege vulnerability exists when the Windows iSCSI Target Service improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges. To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted applicati
nvd
CVE-2021-1729P3HIGHCVSS 7.8v20h2v1909+1 more2021-03-11
CVE-2021-1729 [HIGH] CWE-269 CVE-2021-1729: Windows Update Stack Setup Elevation of Privilege Vulnerability Windows Update Stack Setup Elevation of Privilege Vulnerability
nvd
CVE-2019-1162P3HIGHCVSS 7.8v1803v1903+1 more2019-08-14
CVE-2019-1162 [HIGH] CWE-269 CVE-2019-1162: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC). An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then install programs; view, change, or delete data; or create new accounts with fu
nvd
CVE-2023-36907P3HIGHCVSS 7.5≥ 10.0.14393.0, < 10.0.14393.61672023-08-08
CVE-2023-36907 [HIGH] CWE-170 CVE-2023-36907: Windows Cryptographic Services Information Disclosure Vulnerability Windows Cryptographic Services Information Disclosure Vulnerability
nvd
Microsoft Windows Server 2016 vulnerabilities | cvebase