Microsoft Windows Server 2019 vulnerabilities
3,952 known vulnerabilities affecting microsoft/windows_server_2019.
Total CVEs
3,952
CISA KEV
125
actively exploited
Public exploits
113
Exploited in wild
171
Severity breakdown
CRITICAL126HIGH2786MEDIUM1024LOW16
Vulnerabilities
Page 119 of 198
CVE-2021-38638P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.17763.21832021-09-15
CVE-2021-38638 [HIGH] CWE-269 CVE-2021-38638: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2021-36954P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.17763.21832021-09-15
CVE-2021-36954 [HIGH] CWE-269 CVE-2021-36954: Windows Bind Filter Driver Elevation of Privilege Vulnerability
Windows Bind Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-38628P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.17763.21832021-09-15
CVE-2021-38628 [HIGH] CWE-269 CVE-2021-38628: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2022-35765P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.32872022-08-09
CVE-2022-35765 [HIGH] CWE-269 CVE-2022-35765: Storage Spaces Direct Elevation of Privilege Vulnerability
Storage Spaces Direct Elevation of Privilege Vulnerability
nvd
CVE-2022-35763P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.32872022-08-09
CVE-2022-35763 [HIGH] CWE-269 CVE-2022-35763: Storage Spaces Direct Elevation of Privilege Vulnerability
Storage Spaces Direct Elevation of Privilege Vulnerability
nvd
CVE-2022-35764P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.32872022-08-09
CVE-2022-35764 [HIGH] CWE-269 CVE-2022-35764: Storage Spaces Direct Elevation of Privilege Vulnerability
Storage Spaces Direct Elevation of Privilege Vulnerability
nvd
CVE-2023-21551P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.38872023-01-10
CVE-2023-21551 [HIGH] CWE-416 CVE-2023-21551: Microsoft Cryptographic Services Elevation of Privilege Vulnerability
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
nvd
CVE-2023-21561P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.38872023-01-10
CVE-2023-21561 [HIGH] CWE-190 CVE-2023-21561: Microsoft Cryptographic Services Elevation of Privilege Vulnerability
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
nvd
CVE-2021-41366P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.17763.23002021-11-10
CVE-2021-41366 [HIGH] CWE-269 CVE-2021-41366: Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
nvd
CVE-2024-38202P3HIGHCVSS 7.3≥ 10.0.17763.0, < 10.0.17763.64142024-08-08
CVE-2024-38202 [HIGH] CWE-284 CVE-2024-38202: Summary Microsoft was notified that an elevation of privilege vulnerability exists in Windows Update
Summary
Microsoft was notified that an elevation of privilege vulnerability exists in Windows Update, potentially enabling an attacker with basic user privileges to reintroduce previously mitigated vulnerabilities or circumvent some features of Virtualization Based Security (VBS). However, an attacker attempting to exploit this vulnerability requires
nvd
CVE-2023-21756P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.46452023-07-11
CVE-2023-21756 [HIGH] CWE-416 CVE-2023-21756: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21804P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.40102023-02-14
CVE-2023-21804 [HIGH] CWE-122 CVE-2023-21804: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-34706P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.32872022-08-09
CVE-2022-34706 [HIGH] CWE-269 CVE-2022-34706: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-21524P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.38872023-01-10
CVE-2023-21524 [HIGH] CWE-798 CVE-2023-21524: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-24910P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.41312023-03-14
CVE-2023-24910 [HIGH] CWE-476 CVE-2023-24910: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-23412P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.41312023-03-14
CVE-2023-23412 [HIGH] CWE-269 CVE-2023-23412: Windows Accounts Picture Elevation of Privilege Vulnerability
Windows Accounts Picture Elevation of Privilege Vulnerability
nvd
CVE-2022-41100P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.36502022-11-09
CVE-2022-41100 [HIGH] CWE-362 CVE-2022-41100: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-41045P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.36502022-11-09
CVE-2022-41045 [HIGH] CWE-362 CVE-2022-41045: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-41093P3HIGHCVSS 7.8≥ 10.0.17763.0, < 10.0.17763.36502022-11-09
CVE-2022-41093 [HIGH] CWE-362 CVE-2022-41093: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2024-21443P3HIGHCVSS 7.3fixed in 10.0.17763.5576≥ 10.0.17763.0, < 10.0.17763.55762024-03-12
CVE-2024-21443 [HIGH] CWE-416 CVE-2024-21443: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd