Microsoft Windows Server 2016 vulnerabilities
4,167 known vulnerabilities affecting microsoft/windows_server_2016.
Total CVEs
4,167
CISA KEV
115
actively exploited
Public exploits
129
Exploited in wild
107
Severity breakdown
CRITICAL114HIGH2916MEDIUM1118LOW19
Vulnerabilities
Page 139 of 209
CVE-2021-1692HIGHCVSS 7.7≥ 10.0.0, < publication2021-01-12
CVE-2021-1692 [HIGH] Windows Hyper-V Denial of Service Vulnerability
Windows Hyper-V Denial of Service Vulnerability
Windows Hyper-V Denial of Service Vulnerability
cvelistv5
CVE-2021-1667HIGHCVSS 8.8v20h2v1909+2 more2021-01-12
CVE-2021-1667 [HIGH] CVE-2021-1667: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1654HIGHCVSS 7.8v20h2v1909+2 more2021-01-12
CVE-2021-1654 [HIGH] CWE-269 CVE-2021-1654: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1704HIGHCVSS 7.8v20h2v1909+2 more2021-01-12
CVE-2021-1704 [HIGH] CWE-269 CVE-2021-1704: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2021-1680HIGHCVSS 7.8v20h2v1909+2 more2021-01-12
CVE-2021-1680 [HIGH] CWE-269 CVE-2021-1680: Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
nvd
CVE-2021-1685HIGHCVSS 7.8v20h2v1909+2 more2021-01-12
CVE-2021-1685 [HIGH] CWE-269 CVE-2021-1685: Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
nvd
CVE-2021-1669HIGHCVSS 8.8v20h2v1909+2 more2021-01-12
CVE-2021-1669 [HIGH] CVE-2021-1669: Windows Remote Desktop Security Feature Bypass Vulnerability
Windows Remote Desktop Security Feature Bypass Vulnerability
nvd
CVE-2021-1655HIGHCVSS 7.8v20h2v1909+2 more2021-01-12
CVE-2021-1655 [HIGH] CWE-269 CVE-2021-1655: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1637MEDIUMCVSS 5.5v20h2v1909+2 more2021-01-12
CVE-2021-1637 [MEDIUM] CVE-2021-1637: Windows DNS Query Information Disclosure Vulnerability
Windows DNS Query Information Disclosure Vulnerability
nvd
CVE-2021-1670MEDIUMCVSS 5.5v20h2v20042021-01-12
CVE-2021-1670 [MEDIUM] CVE-2021-1670: Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
nvd
CVE-2021-1684MEDIUMCVSS 5.5v20h2v1909+2 more2021-01-12
CVE-2021-1684 [MEDIUM] CVE-2021-1684: Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For
Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG.
To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1679MEDIUMCVSS 6.5≥ 10.0.0, < publication2021-01-12
CVE-2021-1679 [MEDIUM] Windows CryptoAPI Denial of Service Vulnerability
Windows CryptoAPI Denial of Service Vulnerability
Windows CryptoAPI Denial of Service Vulnerability
cvelistv5
CVE-2021-1683MEDIUMCVSS 5.5v20h2v1909+2 more2021-01-12
CVE-2021-1683 [MEDIUM] CVE-2021-1683: Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For
Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG.
To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1656MEDIUMCVSS 5.5v20h2v1909+2 more2021-01-12
CVE-2021-1656 [MEDIUM] CVE-2021-1656: TPM Device Driver Information Disclosure Vulnerability
TPM Device Driver Information Disclosure Vulnerability
nvd
CVE-2021-1699MEDIUMCVSS 5.5v20h2v1909+2 more2021-01-12
CVE-2021-1699 [MEDIUM] CVE-2021-1699: Windows (modem.sys) Information Disclosure Vulnerability
Windows (modem.sys) Information Disclosure Vulnerability
nvd
CVE-2021-1645MEDIUMCVSS 5.5v20h2v1909+2 more2021-01-12
CVE-2021-1645 [MEDIUM] CVE-2021-1645: Windows Docker Information Disclosure Vulnerability
Windows Docker Information Disclosure Vulnerability
nvd
CVE-2021-1638MEDIUMCVSS 5.5v20h2v1909+1 more2021-01-12
CVE-2021-1638 [MEDIUM] CVE-2021-1638: Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For
Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG.
To address the vulnerability, Microsoft has released a software update that will fail attempts to pair if the remote device exchanges a public key with the same X coordinate
nvd
CVE-2021-1663MEDIUMCVSS 5.5v20h2v20042021-01-12
CVE-2021-1663 [MEDIUM] CVE-2021-1663: Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
nvd
CVE-2021-1672MEDIUMCVSS 5.5v20h2v1909+1 more2021-01-12
CVE-2021-1672 [MEDIUM] CVE-2021-1672: Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
nvd
CVE-2021-1708MEDIUMCVSS 5.7≥ 10.0.0, < publication2021-01-12
CVE-2021-1708 [MEDIUM] Windows GDI+ Information Disclosure Vulnerability
Windows GDI+ Information Disclosure Vulnerability
Windows GDI+ Information Disclosure Vulnerability
cvelistv5