Microsoft Windows Server 2016 vulnerabilities

4,167 known vulnerabilities affecting microsoft/windows_server_2016.

Total CVEs
4,167
CISA KEV
114
actively exploited
Public exploits
129
Exploited in wild
107
Severity breakdown
CRITICAL114HIGH2916MEDIUM1118LOW19

Vulnerabilities

Page 94 of 209
CVE-2022-33635HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-33635 [HIGH] Windows GDI+ Remote Code Execution Vulnerability Windows GDI+ Remote Code Execution Vulnerability Windows GDI+ Remote Code Execution Vulnerability
cvelistv5
CVE-2022-37991HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37991 [HIGH] CVE-2022-37991: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-37984HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37984 [HIGH] CVE-2022-37984: Windows WLAN Service Elevation of Privilege Vulnerability Windows WLAN Service Elevation of Privilege Vulnerability
nvd
CVE-2022-38003HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-38003 [HIGH] CVE-2022-38003: Windows Resilient File System Elevation of Privilege Windows Resilient File System Elevation of Privilege
nvd
CVE-2022-38045HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-38045 [HIGH] CVE-2022-38045: Windows Server Service Elevation of Privilege Vulnerability Windows Server Service Elevation of Privilege Vulnerability
nvd
CVE-2022-37982HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37982 [HIGH] CVE-2022-37982: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2022-37993HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37993 [HIGH] CVE-2022-37993: Windows Group Policy Preference Client Elevation of Privilege Vulnerability Windows Group Policy Preference Client Elevation of Privilege Vulnerability
nvd
CVE-2022-41081HIGHCVSS 8.1≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-41081 [HIGH] CVE-2022-41081: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-37986HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37986 [HIGH] CVE-2022-37986: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2022-38037HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-38037 [HIGH] CVE-2022-38037: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-22035HIGHCVSS 8.1≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-22035 [HIGH] CWE-362 CVE-2022-22035: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-38031HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-38031 [HIGH] CVE-2022-38031: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2022-41033HIGHCVSS 7.8KEVfixed in 10.0.14393.5427≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-41033 [HIGH] CWE-843 CVE-2022-41033: Windows COM+ Event System Service Elevation of Privilege Vulnerability Windows COM+ Event System Service Elevation of Privilege Vulnerability
nvd
CVE-2022-37987HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37987 [HIGH] CVE-2022-37987: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-38042HIGHCVSS 7.1≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-38042 [HIGH] CVE-2022-38042: Active Directory Domain Services Elevation of Privilege Vulnerability Active Directory Domain Services Elevation of Privilege Vulnerability
nvd
CVE-2022-37994HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37994 [HIGH] CVE-2022-37994: Windows Group Policy Preference Client Elevation of Privilege Vulnerability Windows Group Policy Preference Client Elevation of Privilege Vulnerability
nvd
CVE-2022-38034HIGHCVSS 8.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-38034 [HIGH] CVE-2022-38034: Windows Workstation Service Elevation of Privilege Vulnerability Windows Workstation Service Elevation of Privilege Vulnerability
nvd
CVE-2022-37999HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37999 [HIGH] CVE-2022-37999: Windows Group Policy Preference Client Elevation of Privilege Vulnerability Windows Group Policy Preference Client Elevation of Privilege Vulnerability
nvd
CVE-2022-37990HIGHCVSS 7.8≥ 10.0.14393.0, < 10.0.14393.54272022-10-11
CVE-2022-37990 [HIGH] CVE-2022-37990: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-34689HIGHCVSS 7.5≥ 10.0.14393.0, < 10.0.14393.52912022-10-11
CVE-2022-34689 [HIGH] Windows CryptoAPI Spoofing Vulnerability Windows CryptoAPI Spoofing Vulnerability Windows CryptoAPI Spoofing Vulnerability
cvelistv5