Microsoft Windows Server 2016 vulnerabilities
4,536 known vulnerabilities affecting microsoft/windows_server_2016.
Total CVEs
4,536
CISA KEV
116
actively exploited
Public exploits
172
Exploited in wild
175
Severity breakdown
CRITICAL135HIGH3181MEDIUM1198LOW22
Vulnerabilities
Page 14 of 227
CVE-2023-28293P3HIGHCVSS 7.8PoC≥ 10.0.14393.0, < 10.0.14393.58502023-04-11
CVE-2023-28293 [HIGH] CWE-191 CVE-2023-28293: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43639P2CRITICALCVSS 9.8fixed in 10.0.14393.7515≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43639 [CRITICAL] CWE-197 CVE-2024-43639: Windows KDC Proxy Remote Code Execution Vulnerability
Windows KDC Proxy Remote Code Execution Vulnerability
nvd
CVE-2024-38060P2HIGHCVSS 8.8fixed in 10.0.14393.7159≥ 10.0.14393.0, < 10.0.14393.71592024-07-09
CVE-2024-38060 [HIGH] CWE-122 CVE-2024-38060: Windows Imaging Component Remote Code Execution Vulnerability
Windows Imaging Component Remote Code Execution Vulnerability
nvd
CVE-2019-1476P3HIGHCVSS 7.8PoCv1803v1903+1 more2019-12-10
CVE-2019-1476 [HIGH] CVE-2019-1476: An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improp
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1483.
nvd
CVE-2024-21357P2HIGHCVSS 8.1fixed in 10.0.14393.6709≥ 10.0.14393.0, < 10.0.14393.67092024-02-13
CVE-2024-21357 [HIGH] CWE-843 CVE-2024-21357: Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
nvd
CVE-2023-21547P3HIGHCVSS 7.5≥ 10.0.14393.0, < 10.0.14393.56482023-01-10
CVE-2023-21547 [HIGH] CWE-476 CVE-2023-21547: Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
nvd
CVE-2019-0836P3HIGHCVSS 7.8PoCv1709v18032019-04-09
CVE-2019-0836 [HIGH] CVE-2019-0836: An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV dr
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0731, CVE-2019-0796, CVE-2019-0805, CVE-2019-0841.
nvd
CVE-2018-8410P3HIGHCVSS 7.8PoCv(Server Core installation)2018-09-13
CVE-2018-8410 [HIGH] CWE-404 CVE-2018-8410: An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles regist
An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory, aka "Windows Registry Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Server
nvd
CVE-2018-1010P2HIGHCVSS 8.8v17092018-04-12
CVE-2018-1010 [HIGH] CWE-20 CVE-2018-1010: A remote code execution vulnerability exists when the Windows font library improperly handles specia
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphics Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Wi
nvd
CVE-2019-1222P2CRITICALCVSS 9.8v1803v19032019-08-14
CVE-2019-1222 [CRITICAL] CVE-2019-1222: A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests. This vulnerability is pre-authentication and requires no user interaction. An attacker who successfully exploited this vulnerability cou
nvd
CVE-2019-1226P2CRITICALCVSS 9.8v1803v19032019-08-14
CVE-2019-1226 [CRITICAL] CVE-2019-1226: A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests. This vulnerability is pre-authentication and requires no user interaction. An attacker who successfully exploited this vulnerability cou
nvd
CVE-2025-53766P2CRITICALCVSS 9.8fixed in 10.0.14393.8330≥ 10.0.14393.0, < 10.0.14393.83302025-08-12
CVE-2025-53766 [CRITICAL] CWE-122 CVE-2025-53766: Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a ne
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.
nvd
CVE-2018-0744P3HIGHCVSS 7.0PoCv17092018-01-04
CVE-2018-0744 [HIGH] CVE-2018-0744: The Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 160
The Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows Elevation of Privilege Vulnerability".
nvd
CVE-2025-49730P3HIGHCVSS 7.8PoCfixed in 10.0.14393.8246≥ 10.0.14393.0, < 10.0.14393.82462025-07-08
CVE-2025-49730 [HIGH] CWE-122 CVE-2025-49730: Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an autho
Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-49113P3HIGHCVSS 7.5fixed in 10.0.14393.7606≥ 10.0.14393.0, < 10.0.14393.76062024-12-12
CVE-2024-49113 [HIGH] CWE-125 CVE-2024-49113: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2021-24078P2CRITICALCVSS 9.8v20h2v1909+2 more2021-02-25
CVE-2021-24078 [CRITICAL] CVE-2021-24078: Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2019-0731P3HIGHCVSS 7.8PoCv1709v18032019-04-09
CVE-2019-0731 [HIGH] CVE-2019-0731: An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV dr
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0796, CVE-2019-0805, CVE-2019-0836, CVE-2019-0841.
nvd
CVE-2019-0730P3HIGHCVSS 7.8PoCv1709v18032019-04-09
CVE-2019-0730 [HIGH] CWE-264 CVE-2019-0730: An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV dr
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0731, CVE-2019-0796, CVE-2019-0805, CVE-2019-0836, CVE-2019-0841.
nvd
CVE-2019-0735P3HIGHCVSS 7.8PoCv1709v18032019-04-09
CVE-2019-0735 [HIGH] CWE-269 CVE-2019-0735: An elevation of privilege vulnerability exists when the Windows Client Server Run-Time Subsystem (CS
An elevation of privilege vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to properly handle objects in memory, aka 'Windows CSRSS Elevation of Privilege Vulnerability'.
nvd
CVE-2019-1245P3MEDIUMCVSS 6.5PoCv1803v19032019-09-11
CVE-2019-1245 [MEDIUM] CVE-2019-1245: An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of
An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1244, CVE-2019-1251.
nvd