Microsoft Windows Server 2016 vulnerabilities
4,536 known vulnerabilities affecting microsoft/windows_server_2016.
Total CVEs
4,536
CISA KEV
116
actively exploited
Public exploits
172
Exploited in wild
176
Severity breakdown
CRITICAL135HIGH3181MEDIUM1198LOW22
Vulnerabilities
Page 138 of 227
CVE-2020-0743P3HIGHCVSS 7.8v1803v1903+1 more2020-02-11
CVE-2020-0743 [HIGH] CVE-2020-0743: An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic
An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Service handles objects in memory, aka 'Connected Devices Platform Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0740, CVE-2020-0741, CVE-2020-0742, CVE-2020-0749, CVE-2020-0750.
nvd
CVE-2020-0773P3HIGHCVSS 7.8v1803v1903+1 more2020-03-12
CVE-2020-0773 [HIGH] CVE-2020-0773: An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly
An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows ActiveX Installer Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0770, CVE-2020-0860.
nvd
CVE-2020-0770P3HIGHCVSS 7.8v1803v1903+1 more2020-03-12
CVE-2020-0770 [HIGH] CVE-2020-0770: An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly
An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows ActiveX Installer Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0773, CVE-2020-0860.
nvd
CVE-2023-24901P3HIGHCVSS 7.5≥ 10.0.14393.0, < 10.0.14393.59212023-05-09
CVE-2023-24901 [HIGH] CWE-126 CVE-2023-24901: Windows NFS Portmapper Information Disclosure Vulnerability
Windows NFS Portmapper Information Disclosure Vulnerability
nvd
CVE-2020-0763P3HIGHCVSS 7.8v1803v1903+1 more2020-03-12
CVE-2020-0763 [HIGH] CVE-2020-0763: An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain
An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain objects in memory.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Windows Defender Security Center Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0762.
nvd
CVE-2020-0762P3HIGHCVSS 7.8v1803v1903+1 more2020-03-12
CVE-2020-0762 [HIGH] CVE-2020-0762: An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain
An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain objects in memory.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Windows Defender Security Center Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0763.
nvd
CVE-2020-0916P3HIGHCVSS 7.8v1803v1903+2 more2020-06-09
CVE-2020-0916 [HIGH] CVE-2020-0916: An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface
An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'Windows GDI Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0915.
nvd
CVE-2020-1201P3HIGHCVSS 7.8v1803v1903+2 more2020-06-09
CVE-2020-1201 [HIGH] CVE-2020-1201: An elevation of privilege vulnerability exists in the way the Windows Now Playing Session Manager ha
An elevation of privilege vulnerability exists in the way the Windows Now Playing Session Manager handles objects in memory, aka 'Windows Now Playing Session Manager Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0915P3HIGHCVSS 7.8v1803v1903+2 more2020-06-09
CVE-2020-0915 [HIGH] CVE-2020-0915: An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface
An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'Windows GDI Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0916.
nvd
CVE-2020-1140P3HIGHCVSS 7.8v1903v19092020-05-21
CVE-2020-1140 [HIGH] CVE-2020-1140: An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, ak
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1154P3HIGHCVSS 7.8v1803v1903+1 more2020-05-21
CVE-2020-1154 [HIGH] CVE-2020-1154: An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windows Common Log File System Driver Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1138P3HIGHCVSS 7.8v1803v1903+1 more2020-05-21
CVE-2020-1138 [HIGH] CVE-2020-1138: An elevation of privilege vulnerability exists when the Storage Service improperly handles file oper
An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows Storage Service Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1137P3HIGHCVSS 7.8v1803v1903+1 more2020-05-21
CVE-2020-1137 [HIGH] CVE-2020-1137: An elevation of privilege vulnerability exists in the way the Windows Push Notification Service hand
An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1142P3HIGHCVSS 7.8v1803v1903+1 more2020-05-21
CVE-2020-1142 [HIGH] CVE-2020-1142: An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface
An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'Windows GDI Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0780P3HIGHCVSS 7.8v1803v1903+1 more2020-03-12
CVE-2020-0780 [HIGH] CVE-2020-0780: An elevation of privilege vulnerability exists in the way that the Windows Network List Service hand
An elevation of privilege vulnerability exists in the way that the Windows Network List Service handles objects in memory, aka 'Windows Network List Service Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0636P3HIGHCVSS 7.8v1903v19092020-01-14
CVE-2020-0636 [HIGH] CVE-2020-0636: An elevation of privilege vulnerability exists in the way that the Windows Subsystem for Linux handl
An elevation of privilege vulnerability exists in the way that the Windows Subsystem for Linux handles files, aka 'Windows Subsystem for Linux Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1287P3HIGHCVSS 7.8v1803v19032019-09-11
CVE-2019-1287 [HIGH] CVE-2019-1287: An elevation of privilege vulnerability exists in the way that the Windows Network Connectivity Assi
An elevation of privilege vulnerability exists in the way that the Windows Network Connectivity Assistant handles objects in memory, aka 'Windows Network Connectivity Assistant Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1277P3HIGHCVSS 7.8v1803v19032019-09-11
CVE-2019-1277 [HIGH] CVE-2019-1277: An elevation of privilege vulnerability exists in Windows Audio Service when a malformed parameter i
An elevation of privilege vulnerability exists in Windows Audio Service when a malformed parameter is processed, aka 'Windows Audio Service Elevation of Privilege Vulnerability'.
nvd
CVE-2021-1650P3HIGHCVSS 7.8v20h2v1909+2 more2021-01-12
CVE-2021-1650 [HIGH] CWE-269 CVE-2021-1650: Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
nvd
CVE-2020-1521P3HIGHCVSS 7.8v1903v1909+2 more2020-08-17
CVE-2020-1521 [HIGH] CVE-2020-1521: An elevation of privilege vulnerability exists when the Windows Speech Runtime improperly handles me
An elevation of privilege vulnerability exists when the Windows Speech Runtime improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windo
nvd