cbcvebase.

Microsoft Windows Server 2016 vulnerabilities

4,536 known vulnerabilities affecting microsoft/windows_server_2016.

Total CVEs
4,536
CISA KEV
116
actively exploited
Public exploits
172
Exploited in wild
176
Severity breakdown
CRITICAL135HIGH3181MEDIUM1198LOW22

Vulnerabilities

Page 180 of 227
CVE-2018-8167P4HIGHCVSS 7.0v1709v1803+1 more2018-05-09
CVE-2018-8167 [HIGH] CWE-404 CVE-2018-8167: An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka "Windows Common Log File System Driver Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server
nvd
CVE-2020-0936P4HIGHCVSS 7.1v1803v1903+1 more2020-04-15
CVE-2020-0936 [HIGH] CVE-2020-0936: An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file redirections, aka 'Windows Scheduled Task Elevation of Privilege Vulnerability'.
nvd
CVE-2022-26784P4MEDIUMCVSS 6.5v20h2≥ 10.0.14393.0, < 10.0.14393.50662022-04-15
CVE-2022-26784 [MEDIUM] CVE-2022-26784: Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability
nvd
CVE-2022-24538P4MEDIUMCVSS 6.5v20h2≥ 10.0.14393.0, < 10.0.14393.50662022-04-15
CVE-2022-24538 [MEDIUM] CVE-2022-24538: Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability
nvd
CVE-2020-0785P4HIGHCVSS 7.1v1803v1903+1 more2020-03-12
CVE-2020-0785 [HIGH] CWE-269 CVE-2020-0785: An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) impro An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0918P4MEDIUMCVSS 6.8v1903v19092020-04-15
CVE-2020-0918 [MEDIUM] CVE-2020-0918: An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to proper An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0917.
nvd
CVE-2026-40401P4HIGHCVSS 7.1fixed in 10.0.14393.9140≥ 10.0.14393.0, < 10.0.14393.91402026-05-12
CVE-2026-40401 [HIGH] CWE-476 CVE-2026-40401: Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally.
cvelistv5nvd
CVE-2022-35759P4MEDIUMCVSS 6.5≥ 10.0.14393.0, < 10.0.14393.52912023-05-31
CVE-2022-35759 [MEDIUM] CVE-2022-35759: Windows Local Security Authority (LSA) Denial of Service Vulnerability Windows Local Security Authority (LSA) Denial of Service Vulnerability
nvd
CVE-2023-35321P4MEDIUMCVSS 6.5≥ 10.0.14393.0, < 10.0.14393.60852023-07-11
CVE-2023-35321 [MEDIUM] CWE-170 CVE-2023-35321: Windows Deployment Services Denial of Service Vulnerability Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2022-21960P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21960 [MEDIUM] CVE-2022-21960: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21959P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21959 [MEDIUM] CVE-2022-21959: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21892P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21892 [MEDIUM] CVE-2022-21892: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21958P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21958 [MEDIUM] CVE-2022-21958: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21961P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21961 [MEDIUM] CVE-2022-21961: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21962P4MEDIUMCVSS 6.8≥ 10.0.14393.0, < 10.0.14393.48862022-01-11
CVE-2022-21962 [MEDIUM] CVE-2022-21962: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2024-43634P4MEDIUMCVSS 6.8fixed in 10.0.14393.7515≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43634 [MEDIUM] CWE-125 CVE-2024-43634: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43449P4MEDIUMCVSS 6.8fixed in 10.0.14393.7515≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43449 [MEDIUM] CWE-125 CVE-2024-43449: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43637P4MEDIUMCVSS 6.8fixed in 10.0.14393.7515≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43637 [MEDIUM] CWE-125 CVE-2024-43637: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43638P4MEDIUMCVSS 6.8fixed in 10.0.14393.7515≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43638 [MEDIUM] CWE-125 CVE-2024-43638: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43643P4MEDIUMCVSS 6.8fixed in 10.0.14393.7515≥ 10.0.14393.0, < 10.0.14393.75152024-11-12
CVE-2024-43643 [MEDIUM] CWE-125 CVE-2024-43643: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server 2016 vulnerabilities | cvebase